#VU54189 Improper Certificate Validation in Cisco DNA Center (Catalyst Center) - CVE-2021-1134
Published: June 17, 2021
Cisco DNA Center (Catalyst Center)
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to gain unauthorized access to sensitive data.
The vulnerability exists due to an incomplete validation of the X.509 certificate used when establishing a connection between DNA Center and Cisco Identity Services Engine (ISE) server. A remote attacker can use a specially crafted certificate and view sensitive information on the target system.