CVE-2025-20178
MEDIUMDescription
A vulnerability in the web-based management interface of Cisco Secure Network Analytics could allow an authenticated, remote attacker with valid administrative credentials to execute arbitrary commands as root on the underlying operating system. This vulnerability is due to insufficient integrity checks within device backup files. An attacker with valid administrative credentials could exploit this vulnerability by crafting a malicious backup file and restoring it to an affected device. A successful exploit could allow the attacker to obtain shell access on the underlying operating system with the privileges of root.
Is your site exposed to CVE-2025-20178?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
| cisco | secure_network_analytics |
References
Frequently Asked Questions
What is CVE-2025-20178? +
How severe is CVE-2025-20178? +
What products are affected by CVE-2025-20178? +
How do I check if I'm vulnerable to CVE-2025-20178? +
Related Vulnerabilities
DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase enterprise token handling can let TokenFilter#doFilter() …
MikroTik RouterOS accepts malformed RSA/PKCS#1 v1.5 signatures during X.509 validation. Because its trust store includes an e=3 root CA, an …
In Bouncy Castle for Java before 1.85, CMS verifySignatures returns true for SignedData with zero signers. This issue also affects …
In Bouncy Castle for Java before 1.85, RSA PKCS#1 verification skips last two hash bytes in NULL-omitted path. This issue …
OpenLearnX is an open-source, decentralized learning and assessment platform. Prior to 2.0.4, a critical authentication vulnerability was identified in OpenLearnX …
Hyperbridge is a hyper-scalable coprocessor for verifiable, cross-chain interoperability. A critical vulnerability was discovered in the ismp-grandpa crate, that allowed …