logo

Cisco URWB Bug Exposes Systems To Root Privilege Exploit

ID: 4380abf0-aa90-5680-9750-acbc0b85baab

STIX ID: report--4380abf0-aa90-5680-9750-acbc0b85baab

Feed Name: Cyble Blog

Threat Score
85/100

Date Published: 2024-12-04

Date Updated: 2026-07-16

...
...

Cisco disclosed CVE-2024-20418, a critical (CVSS 10.0) remote, unauthenticated command-injection vulnerability in Unified Industrial Wireless Software for Ultra-Reliable Wireless Backhaul (URWB) Access Points. The flaw can provide attackers root-level command execution on affected Catalyst IW9165/IW9167 models when URWB mode is enabled; Cisco has released fixed software (first fixed in 17.15.1) and urges immediate upgrades.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.