Multiple Vulnerabilities in Cisco Security Products Could Allow for Arbitrary Code Execution
ID: 2ee49ccd-5b68-5811-8c03-42ba5df7c90a
STIX ID: report--2ee49ccd-5b68-5811-8c03-42ba5df7c90a
Feed Name: CISecurity.org Advisories
Multiple vulnerabilities affecting Cisco Secure Firewall products (FMC, ASA, FTD, IOS, IOS XE) were disclosed, the most severe being an unauthenticated remote command injection in the RADIUS subsystem allowing arbitrary code execution (CVE-2025-20265). The advisory enumerates many additional CVEs that enable denial-of-service, cross-site scripting, buffer overflow, privilege escalation, file access, and VPN-related issues; organizations should prioritize patching and mitigations for affected devices, though no evidence of in-the-wild exploitation is provided.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
