logo

Cisco scores a perfect CVSS 10 with critical flaw in its wireless system

ID: 5ca88107-e7ba-51c8-bd67-75365eb8a9e8

STIX ID: report--5ca88107-e7ba-51c8-bd67-75365eb8a9e8

Feed Name: The Register (Security)

Threat Score
90/100

Date Published: 2024-11-07

Date Updated: 2026-04-26

Author: Iain Thomson

...
...

Cisco has published a critical advisory for CVE-2024-20418: a remote, unauthenticated command-injection vulnerability in Unified Industrial Wireless Software used by Ultra-Reliable Wireless Backhaul devices. A successful exploit can yield root access, affects several Catalyst IW916x models with URWB enabled, carries a CVSS 10.0 severity, has no workaround, and Cisco provides a patch with no reported in-the-wild exploitation to date.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.