Tag: IOS XE Wireless Controller

Cisco Patches CVE-2025-20188 (10.0 CVSS) in IOS XE That Enables Root Exploits via JWT
News

Cisco Patches CVE-2025-20188 (10.0 CVSS) in IOS XE That Enables Root Exploits via JWT

Cisco has patched its IOS XE Wireless Controller software to fix a maximum-severity security hole that may allow a remote, unauthenticated attacker to upload any file to a vulnerable system. The CVSS rating system has assigned the vulnerability, identified as CVE-2025-20188, a score of 10.0. A hard-coded JSON Web Token (JWT) on a compromised server is the cause of this vulnerability, the business stated in an alert on Wednesday. By submitting specially constructed HTTPS queries to the AP image download interface, an attacker might take advantage of this vulnerability. The attacker might be able to upload files, traverse paths, and run arbitrary commands with root privileges if the exploit is successful. However, the device must have the Out-of-Band AP Image Download capability...