Skip to content
Multiple Vulnerabilities in Cisco Products Could Allow for Remote Code Execution

Multiple Vulnerabilities in Cisco Products Could Allow for Remote Code Execution

Cisecurity November 6, 2025

Multiple vulnerabilities have been discovered in Cisco products, the most severe of which could allow for remote code execution. Cisco is a leading technology company best known for its networking hardware and software, such as routers and switches, that form the backbone of the internet and enterprise networks. Successful exploitation of the most severe of these vulnerabilities could allow for remote code execution as root, which may lead to the complete compromise of the affected device.

The Cisco Product Security Incident Response Team (PSIRT) is aware of attempted exploitation of CVE-2025-20354 and CVE-2025-20358. A detection guide can be found in the references section further down this advisory.

Multiple vulnerabilities have been discovered in Cisco products, the most severe of which could allow for remote code execution. Details of the vulnerability are as follows:

Tactic : Initial Access ( TA0001 ):

Technique : Exploit Public-Facing Application ( T1190 ):

Successful exploitation of the most severe of these vulnerabilities could allow for remote code execution as root, which may lead to the complete compromise of the affected device.

We recommend the following actions be taken:

Extracted Entities