Cisco has patched its IOS XE Wireless Controller software to fix a maximum-severity security hole that may allow a remote, unauthenticated attacker to upload any file to a vulnerable system.
The CVSS rating system has assigned the vulnerability, identified as CVE-2025-20188, a score of 10.0.
A hard-coded JSON Web Token (JWT) on a compromised server is the cause of this vulnerability, the business stated in an alert on Wednesday.
By submitting specially constructed HTTPS queries to the AP image download interface, an attacker might take advantage of this vulnerability. The attacker might be able to upload files, traverse paths, and run arbitrary commands with root privileges if the exploit is successful.
However, the device must have the Out-of-Band AP Image Download capability activated for the exploitation to work read more about Cisco Patches CVE-2025-20188 (10.0 CVSS) in IOS XE That Enables Root Exploits via JWT.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
