CVE-2025-20188: Cisco IOS XE Wireless Controller Remote File Upload Vulnerability
Summary by Horizon3.ai
1 Articles
1 Articles
All
Left
Center
Right
CVE-2025-20188: Cisco IOS XE Wireless Controller Remote File Upload Vulnerability
CVE-2025-20188 is a critical arbitrary file upload vulnerability found in Cisco IOS XE Wireless Controller Software, including versions used in Catalyst 9800 and Embedded Wireless Controllers. It is caused by a hard-coded JSON Web Token (JWT) that allows an unauthenticated, remote attacker to send specially crafted HTTPS requests to the AP image download interface. This functionality requires the… Source
Coverage Details
Total News Sources1
Leaning Left0Leaning Right0Center0Last UpdatedBias DistributionNo sources with tracked biases.
Bias Distribution
- There is no tracked Bias information for the sources covering this story.
Factuality
To view factuality data please Upgrade to Premium
Ownership
To view ownership data please Upgrade to Vantage