CVE-2025-20186 describes a command injection vulnerability in the web-based management interface of the Wireless LAN Controller feature within Cisco IOS XE Software. This flaw allows an authenticated, remote attacker with lobby ambassador credentials to execute arbitrary Cisco IOS XE Software CLI commands with privilege level 15 due to insufficient input validation. The vulnerability carries a high CVSS score of 8.8, indicating a significant impact with high confidentiality, integrity, and availability compromise, though it requires pre-existing lobby ambassador account access, which is not configured by default. There is currently no public exploit code available (Metasploit, Nuclei, ExploitDB), and it is not listed in CISA's KEV catalog, suggesting it is not being actively exploited in the wild. However, it has garnered some community discussion and media coverage, indicating awareness within the cybersecurity landscape.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
16.12.4CPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:16.12.4:*:*:*:*:*:*:* | ||
16.12.4aCPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:16.12.4a:*:*:*:*:*:*:* | ||
16.12.5CPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:16.12.5:*:*:*:*:*:*:* | ||
16.12.6CPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:16.12.6:*:*:*:*:*:*:* | ||
16.12.6aCPE matchmatch criteria | cpe:2.3:o:cisco:ios_xe:16.12.6a:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.