CVE-2025-20277 | Cisco Unified Contact Center Express up to 12.5(1)_SU03_ES06 Web-based Management Interface path traversal (cisco-sa-uccx-multi-UhOTvPGL / EUVD-2025-16886)
A vulnerability classified as critical was found in Cisco Unified Contact Center Express. This vulnerability affects unknown code of the component Web-based Management Interface. The manipulation leads to path traversal.
This vulnerability was named CVE-2025-20277. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.