Description Preview
A vulnerability exists in the Out-of-Band Access Point (AP) Image Download feature of Cisco IOS XE Software for Wireless LAN Controllers (WLCs). This vulnerability is attributed to the presence of a hard-coded JSON Web Token (JWT) on affected systems. An attacker can exploit this vulnerability by sending crafted HTTPS requests to the AP image download interface. Successful exploitation could enable the attacker to upload files, perform path traversal, and execute arbitrary commands with root privileges. It is important to note that for exploitation to be successful, the Out-of-Band AP Image Download feature must be enabled on the device, which is not enabled by default.
Overview
- CVE ID: CVE-2025-20188
- Severity: Critical (CVSS Base Score: 10)
- Attack Vector: Network
- Attack Complexity: Low
- Privileges Required: None
- User Interaction: None
- Impact: High confidentiality, integrity, and availability impact
- Affected Products: Cisco IOS XE Software versions 17.7.1, 17.10.1, 17.10.1b, 17.8.1, 17.9.1, 17.9.2, 17.9.3, 17.9.4, 17.9.5, 17.9.4a, 17.11.1, 17.12.1, 17.12.2, 17.12.3, 17.13.1, 17.14.1, and 17.11.99SW.
Remediation
To mitigate the risk associated with this vulnerability, users should:
- Disable the Out-of-Band AP Image Download feature if it is not required for your operations.
- Upgrade to a fixed version of Cisco IOS XE Software that addresses this vulnerability. Refer to Cisco's security advisory for the latest updates and patches.
References
- Cisco Security Advisory: cisco-sa-wlc-file-uplpd-rHZG9UfC
- CVE Details: CVE-2025-20188
Industry ExposureMost to leastThis section illustrates the prevalence of a specific Common Vulnerabilities and Exposures (CVE) across various industries based on customer reports. The ranking displays industries from the most to least affected by this particular vulnerability, offering valuable insight into where this CVE has been most frequently observed. This information can help organizations within these sectors prioritize their security efforts, understand their relative risk exposure compared to their peers, and focus remediation strategies where they are most needed. By understanding the industry-specific impact, organizations can make more informed decisions regarding patching, resource allocation, and overall risk management related to this CVE.
This section illustrates the prevalence of a specific Common Vulnerabilities and Exposures (CVE) across various industries based on customer reports. The ranking displays industries from the most to least affected by this particular vulnerability, offering valuable insight into where this CVE has been most frequently observed. This information can help organizations within these sectors prioritize their security efforts, understand their relative risk exposure compared to their peers, and focus remediation strategies where they are most needed. By understanding the industry-specific impact, organizations can make more informed decisions regarding patching, resource allocation, and overall risk management related to this CVE.
- ManufacturingManufacturing: Low
- Public AdministrationPublic Administration: Low
- Health Care & Social AssistanceHealth Care & Social Assistance: Low
- Transportation & WarehousingTransportation & Warehousing: Low
- Retail TradeRetail Trade: Low
- Finance and InsuranceFinance and Insurance: Low
- InformationInformation: Low
- Other Services (except Public Administration)Other Services (except Public Administration): Low
- Real Estate Rental & LeasingReal Estate Rental & Leasing: Low
- UtilitiesUtilities: Low
- Accommodation & Food ServicesAccommodation & Food Services: Low
- Administrative, Support, Waste Management & Remediation ServicesAdministrative, Support, Waste Management & Remediation Services: Low
- Agriculture, Forestry Fishing & HuntingAgriculture, Forestry Fishing & Hunting: Low
- Arts, Entertainment & RecreationArts, Entertainment & Recreation: Low
- ConstructionConstruction: Low
- Educational ServicesEducational Services: Low
- Management of Companies & EnterprisesManagement of Companies & Enterprises: Low
- MiningMining: Low
- Professional, Scientific, & Technical ServicesProfessional, Scientific, & Technical Services: Low
- Wholesale TradeWholesale Trade: Low