← العودة للجدول
CVE-2025-20188
CVE-2025-20188 — A vulnerability in the Out-of-Band Access Point (AP) Image Download, the Clean A
📅 2025-05-07
🔴 Critical 🔥 No NVD Exploit Cisco CVSS 10 🎯 EPSS 4.62%

📋 الوصف الكامل

A vulnerability in the Out-of-Band Access Point (AP) Image Download, the Clean Air Spectral Recording, and the client debug bundles features of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticated, remote attacker to upload arbitrary files to an affected system. This vulnerability is due to the presence of a hard-coded JSON Web Token (JWT) on an affected syst

💻 الأنظمة المتأثرة

Cisco IOS XE 17.x

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2025-20188

📡 المصدر

NVD

✅ الحلول والتخفيف

Cisco Security Advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←