Cisco Warns of CVSS 10.0 FMC RADIUS Flaw Allowing Remote Code Execution

Cisco Warns of CVSS 10.0 FMC RADIUS Flaw Allowing Remote Code Execution

Cisco has released security patches for a critical flaw in Secure Firewall Management Center Software that could allow remote code execution via RADIUS authentication. Multiple high-severity vulnerabilities in Cisco firewalls and related products have also been addressed, emphasizing the importance of timely updates. #CVE202520265 #CiscoFirewalls

Keypoints

  • Cisco released security updates for a high-severity vulnerability in Secure FMC Software.
  • The flaw, CVE-2025-20265, allows unauthenticated remote code execution through RADIUS input handling.
  • Exploitation requires RADIUS authentication to be enabled on affected Cisco devices.
  • Multiple other high-severity vulnerabilities were also fixed in Cisco firewalls and related software.
  • Prompt updating of affected systems is crucial to prevent potential exploits, despite no active attacks reported.

Read More: https://thehackernews.com/2025/08/cisco-warns-of-cvss-100-fmc-radius-flaw.html