Cisco scores a perfect CVSS 10 with critical flaw in its wireless system
ID: 5ca88107-e7ba-51c8-bd67-75365eb8a9e8
STIX ID: report--5ca88107-e7ba-51c8-bd67-75365eb8a9e8
Feed Name: The Register (Security)
Threat Score
Cisco has published a critical advisory for CVE-2024-20418: a remote, unauthenticated command-injection vulnerability in Unified Industrial Wireless Software used by Ultra-Reliable Wireless Backhaul devices. A successful exploit can yield root access, affects several Catalyst IW916x models with URWB enabled, carries a CVSS 10.0 severity, has no workaround, and Cisco provides a patch with no reported in-the-wild exploitation to date.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
