Multiple Vulnerabilities in Cisco Products Could Allow for Remote Code Execution
ID: 4a428f9c-57f5-5994-83f1-ced3123d1630
STIX ID: report--4a428f9c-57f5-5994-83f1-ced3123d1630
Feed Name: CISecurity.org Advisories
Threat Score
Multiple critical vulnerabilities were disclosed in Cisco Unified CCX: CVE-2025-20354 allows unauthenticated remote file upload and arbitrary command execution as root via the Java RMI process, and CVE-2025-20358 enables authentication bypass in the CCX Editor that can lead to arbitrary script execution as an internal non-root user; successful exploitation could result in full device compromise.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
