A vulnerability in the Contact Center Express (CCX) Editor application of Cisco Unified CCX could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative permissions pertaining to script creation and execution. This vulnerability is due to improper authentication mechanisms in the communication between the CCX Editor and an affected Unified CCX server. An attacker could exploit this vulnerability by redirecting the authentication flow to a malicious server and tricking the CCX Editor into believing the authentication was successful. A successful exploit could allow the attacker to create and execute arbitrary scripts on the underlying operating system of an affected Unified CCX server, as an internal non-root user account.
History

Fri, 07 Nov 2025 15:45:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:cisco:unified_contact_center_express:*:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_contact_center_express:15.0:*:*:*:*:*:*:*

Thu, 06 Nov 2025 10:15:00 +0000

Type Values Removed Values Added
First Time appeared Cisco
Cisco unified Contact Center Express
Vendors & Products Cisco
Cisco unified Contact Center Express

Wed, 05 Nov 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 05 Nov 2025 16:45:00 +0000

Type Values Removed Values Added
Description A vulnerability in the Contact Center Express (CCX) Editor application of Cisco Unified CCX could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative permissions pertaining to script creation and execution. This vulnerability is due to improper authentication mechanisms in the communication between the CCX Editor and an affected Unified CCX server. An attacker could exploit this vulnerability by redirecting the authentication flow to a malicious server and tricking the CCX Editor into believing the authentication was successful. A successful exploit could allow the attacker to create and execute arbitrary scripts on the underlying operating system of an affected Unified CCX server, as an internal non-root user account.
Title Cisco Unified Contact Center Express Editor Authentication Bypass Vulnerability
Weaknesses CWE-306
References
Metrics cvssV3_1

{'score': 9.4, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2025-11-05T16:31:23.210Z

Updated: 2025-11-06T04:55:43.689Z

Reserved: 2024-10-10T19:15:13.257Z

Link: CVE-2025-20358

cve-icon Vulnrichment

Updated: 2025-11-05T20:09:48.230Z

cve-icon NVD

Status : Analyzed

Published: 2025-11-05T17:15:38.120

Modified: 2025-11-07T15:43:44.413

Link: CVE-2025-20358

cve-icon Redhat

No data.