peter bassill · operator
$ cve CVE-2025-20265 JSON

CVE-2025-20265

10.0
CRITICAL · CVSS 3.1 · EPSS 15.8% (pctl 97)

Patch early

EPSS 15.8% — above the 10% action threshold.

Description

A vulnerability in the RADIUS subsystem implementation of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to inject arbitrary shell commands that are executed by the device.  This vulnerability is due to a lack of proper handling of user input during the authentication phase. An attacker could exploit this vulnerability by sending crafted input when entering credentials that will be authenticated at the configured RADIUS server. A successful exploit could allow the attacker to execute commands at a high privilege level. Note: For this vulnerability to be exploited, Cisco Secure FMC Software must be configured for RADIUS authentication for the web-based management interface, SSH management, or both.

Scoring

CVSS10.0 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS15.77% — more likely to be exploited than 97% of all CVEs
WeaknessCWE-74
On CISA KEVno
Public exploitnone known
Published2025-08-14
Last modified2026-06-17

Affected (1)

VendorProduct
ciscosecure firewall management center

References

→ the Explorer  ·  watch your stack  ·  NVD