CVE-2025-20188: Path Traversal
A vulnerability in the Out-of-Band Access Point (AP) Image Download, the Clean Air Spectral Recording, and the client debug bundles features of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticated, remote attacker to upload arbitrary files to an affected system. This vulnerability is due to the presence of a hard-coded JSON Web Token (JWT) on an affected system. An attacker could exploit this vulnerability by sending crafted HTTPS requests to the AP file upload interface. A successful exploit could allow the attacker to upload files, perform path traversal, and execute arbitrary commands with root privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20188?
CVE-2025-20188 has been classified as critical due to the risk of remote file uploads by unauthenticated attackers.
How do I fix CVE-2025-20188?
To fix CVE-2025-20188, ensure that you upgrade to the latest version of Cisco IOS XE Software that is not vulnerable.
What systems are affected by CVE-2025-20188?
CVE-2025-20188 affects Cisco IOS XE Software operating on Wireless LAN Controllers.
Can CVE-2025-20188 be exploited remotely?
Yes, CVE-2025-20188 can be exploited by an unauthenticated remote attacker.
What are the potential impacts of CVE-2025-20188?
The potential impacts of CVE-2025-20188 include unauthorized file uploads, which could lead to further compromise of affected systems.