Back

MEDIUM

Cisco Prime Infrastructure and Evolved Programmable Network Manager Open Redirect Vulnerability

Published Feb 4, 2026

Description

A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) and Cisco Prime Infrastructure could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. This vulnerability is due to improper input validation of the parameters in the HTTP request. An attacker could exploit this vulnerability by intercepting and modifying an HTTP request from a user. A successful exploit could allow the attacker to redirect the user to a malicious web page.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner cisco
Published Feb 4, 2026
Updated Feb 4, 2026
Reserved Oct 8, 2025

CISA Vulnrichment

Updated Feb 4, 2026

NVD

Status Analyzed
Modified Jun 29, 2026

Red Hat

No data

ENISA EUVD

Assigner cisco
Published Feb 4, 2026
Updated Feb 4, 2026

GitHub

No data