Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Cisco IOS and IOS XE Software Vulnerabilities Let Attackers Execute Remote Code

Posted on October 17, 2025October 17, 2025 By CWS

Cisco has disclosed a extreme vulnerability in its extensively used IOS and IOS XE Software program, doubtlessly permitting attackers to crash gadgets or seize full management via distant code execution.

The flaw, rooted within the Easy Community Administration Protocol (SNMP) subsystem, stems from a stack overflow situation that attackers can set off with a specifically crafted SNMP packet over IPv4 or IPv6 networks.

This subject impacts all SNMP variations and has already seen exploitation within the wild, highlighting the urgency for community directors to behave swiftly.

The vulnerability allows two most important assault vectors. A low-privileged, authenticated distant attacker armed with SNMPv2c read-only neighborhood strings or legitimate SNMPv3 credentials might induce a denial-of-service (DoS) situation, forcing affected gadgets to reload and disrupting community operations.

Extra alarmingly, a extremely privileged attacker with administrative or privilege stage 15 entry might execute arbitrary code as the foundation consumer on IOS XE gadgets, granting full system takeover.

Cisco’s Product Safety Incident Response Staff (PSIRT) found this throughout a Technical Help Middle help case, and real-world exploits adopted compromised native administrator credentials.

This flaw impacts a broad vary of Cisco gadgets working susceptible IOS or IOS XE releases with SNMP enabled, together with routers, switches, and entry factors important to enterprise infrastructures.

Gadgets that haven’t explicitly excluded the affected object ID (OID) stay in danger. Notably, IOS XR Software program and NX-OS Software program are unaffected, offering some reduction for customers of these platforms.

The potential fallout is critical: DoS assaults might halt vital providers, whereas root-level code execution would possibly allow information theft, lateral motion in networks, or deployment of malware.

Given SNMP’s ubiquity for system monitoring, many organizations unwittingly expose themselves by leaving default configurations intact.

Mitigations

Cisco emphasizes that no full workarounds exist, however mitigations can curb speedy threats. Directors ought to prohibit SNMP entry to trusted customers solely and monitor through the “present snmp host” CLI command.

A key step entails disabling susceptible OIDs utilizing the “snmp-server view” command to create a restricted view, then making use of it to neighborhood strings or SNMPv3 teams. For Meraki cloud-managed switches, contacting help is suggested to implement these modifications.

Patches at the moment are accessible via Cisco’s September 2025 Semiannual Safety Advisory Bundled Publication. Customers can confirm publicity and discover fastened releases utilizing the Cisco Software program Checker device.

To test SNMP standing, run CLI instructions like “present running-config | embody snmp-server neighborhood” for v1/v2c or “present snmp consumer” for v3.

Cisco urges speedy upgrades to fortified software program, warning that delays might invite additional exploits. As networks develop extra interconnected, such vulnerabilities underscore the necessity for rigorous SNMP hardening and proactive patching.

Observe us on Google Information, LinkedIn, and X for every day cybersecurity updates. Contact us to function your tales.

Cyber Security News Tags:Attackers, Cisco, Code, Execute, IOS, Remote, Software, Vulnerabilities

Post navigation

Previous Post: North Korean Hackers Using Malicious Scripts Combining BeaverTail and OtterCookie for Keylogging
Next Post: Microsoft Revokes 200 Fraudulent Certificates Used in Rhysida Ransomware Campaign

Related Posts

New Chaosbot Leveraging CiscoVPN and Active Directory Passwords to Execute Network Commands Cyber Security News
IXON VPN Client Vulnerability Let Attackers Escalate Privileges Cyber Security News
Lumma Infostealers Developers Trying Hard To Conduct Business As Usual Cyber Security News
New Open-Source Tool From Microsoft to Analyze Malware Hidden Within Rust Binaries Cyber Security News
Cisco Nexus 3000 and 9000 Series Vulnerability Let Attackers Trigger DoS Attack Cyber Security News
Critical Citrix 0-Day Vulnerability Exploited Since May, Leaving Global Entities Exposed Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Prosper Data Breach Impacts 17.6 Million Accounts
  • Gladinet Patches Exploited CentreStack Vulnerability
  • F5 Released Security Updates Covering Multiple Products Following Recent Hack
  • Microsoft Revokes 200 Fraudulent Certificates Used in Rhysida Ransomware Campaign
  • Cisco IOS and IOS XE Software Vulnerabilities Let Attackers Execute Remote Code

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Prosper Data Breach Impacts 17.6 Million Accounts
  • Gladinet Patches Exploited CentreStack Vulnerability
  • F5 Released Security Updates Covering Multiple Products Following Recent Hack
  • Microsoft Revokes 200 Fraudulent Certificates Used in Rhysida Ransomware Campaign
  • Cisco IOS and IOS XE Software Vulnerabilities Let Attackers Execute Remote Code

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News