CVE-2025-20274 | Cisco Unified Contact Center Express Web-based Management Interface unrestricted upload (cisco-sa-cuis-file-upload-UhNEtStm / EUVD-2025-21714)
A vulnerability, which was classified as critical, has been found in Cisco Unified Contact Center Express and Unified Intelligence Center. This issue affects some unknown processing of the component Web-based Management Interface. The manipulation leads to unrestricted upload.
The identification of this vulnerability is CVE-2025-20274. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.