logo

Cisco bug lets hackers run commands as root on UWRB access points

ID: 4081369e-fe3c-52ee-b37c-315b96edc81f

STIX ID: report--4081369e-fe3c-52ee-b37c-315b96edc81f

Feed Name: Bleeping Computer

Threat Score
70/100

Date Published: 2024-11-06

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Cisco patched a critical unauthenticated command-injection vulnerability (CVE-2024-20418) in Unified Industrial Wireless Software that can allow remote attackers to execute arbitrary commands as root on URWB-enabled Catalyst IW9165/IW9167 access points; Cisco noted fixes, provided mitigations (verify URWB mode), and reported no known active exploitation or publicly available exploit code.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.