Cisco URWB Bug Exposes Systems To Root Privilege Exploit
ID: 4380abf0-aa90-5680-9750-acbc0b85baab
STIX ID: report--4380abf0-aa90-5680-9750-acbc0b85baab
Feed Name: Cyble Blog
Threat Score
Cisco disclosed CVE-2024-20418, a critical (CVSS 10.0) remote, unauthenticated command-injection vulnerability in Unified Industrial Wireless Software for Ultra-Reliable Wireless Backhaul (URWB) Access Points. The flaw can provide attackers root-level command execution on affected Catalyst IW9165/IW9167 models when URWB mode is enabled; Cisco has released fixed software (first fixed in 17.15.1) and urges immediate upgrades.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
