CVE-2025-20358: Cisco Unified Contact Center Express Editor Authentication Bypass Vulnerability
A vulnerability in the Contact Center Express (CCX) Editor application of Cisco Unified CCX could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative permissions pertaining to script creation and execution. This vulnerability is due to improper authentication mechanisms in the communication between the CCX Editor and an affected Unified CCX server. An attacker could exploit this vulnerability by redirecting the authentication flow to a malicious server and tricking the CCX Editor into believing the authentication was successful. A successful exploit could allow the attacker to create and execute arbitrary scripts on the underlying operating system of an affected Unified CCX server, as an internal non-root user account.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20358?
The severity of CVE-2025-20358 is critical due to its ability to allow unauthenticated remote attackers to gain administrative permissions.
How do I fix CVE-2025-20358?
To fix CVE-2025-20358, update to the latest version of Cisco Unified CCX that contains the security patches addressing this vulnerability.
Who is affected by CVE-2025-20358?
CVE-2025-20358 affects users of Cisco Unified CCX and the CCX Editor application.
What could an attacker do by exploiting CVE-2025-20358?
An attacker exploiting CVE-2025-20358 could bypass authentication and gain administrative access to create and execute scripts.
Is there a workaround for CVE-2025-20358?
Currently, no specific workaround for CVE-2025-20358 is recommended apart from applying the relevant updates.