CVE-2025-20278
Description
A vulnerability in the CLI of multiple Cisco Unified Communications products could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system of an affected device as the root user. This vulnerability is due to improper validation of user-supplied command arguments. An attacker could exploit this vulnerability by executing crafted commands on the CLI of an affected device. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system of an affected device as the root user. To exploit this vulnerability, the attacker must have valid administrative credentials.
CVSS Details
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H Threat Intelligence
Weaknesses 1
Affected Products 193
| Vendor | Product | Version | Range |
|---|---|---|---|
| cisco | finesse | 10.5\(1\) | any |
| cisco | finesse | 10.5\(1\)_es1 | any |
| cisco | finesse | 10.5\(1\)_es2 | any |
| cisco | finesse | 10.5\(1\)_es3 | any |
| cisco | finesse | 10.5\(1\)_es4 | any |
| cisco | finesse | 10.5\(1\)_es5 | any |
| cisco | finesse | 10.5\(1\)_es6 | any |
| cisco | finesse | 10.5\(1\)_es7 | any |
| cisco | finesse | 10.5\(1\)_es8 | any |
| cisco | finesse | 10.5\(1\)_es9 | any |
| cisco | finesse | 10.5\(1\)_es10 | any |
| cisco | finesse | 11.0\(1\) | any |
| cisco | finesse | 11.0\(1\) | any |
| cisco | finesse | 11.0\(1\) | any |
| cisco | finesse | 11.0\(1\) | any |
| cisco | finesse | 11.0\(1\) | any |
| cisco | finesse | 11.0\(1\) | any |
| cisco | finesse | 11.0\(1\) | any |
| cisco | finesse | 11.0\(1\) | any |
| cisco | finesse | 11.5\(1\) | any |
| cisco | finesse | 11.5\(1\) | any |
| cisco | finesse | 11.5\(1\) | any |
| cisco | finesse | 11.5\(1\) | any |
| cisco | finesse | 11.5\(1\) | any |
| cisco | finesse | 11.5\(1\) | any |
| cisco | finesse | 11.5\(1\) | any |
| cisco | finesse | 11.6\(1\) | any |
| cisco | finesse | 11.6\(1\) | any |
| cisco | finesse | 11.6\(1\) | any |
| cisco | finesse | 11.6\(1\) | any |
| cisco | finesse | 11.6\(1\) | any |
| cisco | finesse | 11.6\(1\) | any |
| cisco | finesse | 11.6\(1\) | any |
| cisco | finesse | 11.6\(1\) | any |
| cisco | finesse | 11.6\(1\) | any |
| cisco | finesse | 11.6\(1\) | any |
| cisco | finesse | 11.6\(1\) | any |
| cisco | finesse | 11.6\(1\) | any |
| cisco | finesse | 11.6\(1\)_fips | any |
| cisco | finesse | 12.0\(1\) | any |
| cisco | finesse | 12.0\(1\) | any |
| cisco | finesse | 12.0\(1\) | any |
| cisco | finesse | 12.0\(1\) | any |
| cisco | finesse | 12.0\(1\) | any |
| cisco | finesse | 12.0\(1\) | any |
| cisco | finesse | 12.0\(1\) | any |
| cisco | finesse | 12.0\(1\) | any |
| cisco | finesse | 12.0\(1\) | any |
| cisco | finesse | 12.5\(1\) | any |
| cisco | finesse | 12.5\(1\) | any |
| cisco | finesse | 12.5\(1\) | any |
| cisco | finesse | 12.5\(1\) | any |
| cisco | finesse | 12.5\(1\) | any |
| cisco | finesse | 12.5\(1\) | any |
| cisco | finesse | 12.5\(1\) | any |
| cisco | finesse | 12.5\(1\) | any |
| cisco | finesse | 12.5\(1\) | any |
| cisco | finesse | 12.5\(1\) | any |
| cisco | finesse | 12.5\(1\) | any |
| cisco | finesse | 12.5\(1\) | any |
| cisco | finesse | 12.5\(1\) | any |
| cisco | finesse | 12.5\(2\) | any |
| cisco | finesse | 12.6\(1\) | any |
| cisco | finesse | 12.6\(1\) | any |
| cisco | finesse | 12.6\(1\) | any |
| cisco | finesse | 12.6\(1\) | any |
| cisco | finesse | 12.6\(1\) | any |
| cisco | finesse | 12.6\(1\) | any |
| cisco | finesse | 12.6\(1\) | any |
| cisco | finesse | 12.6\(1\) | any |
| cisco | finesse | 12.6\(1\) | any |
| cisco | finesse | 12.6\(1\) | any |
| cisco | finesse | 12.6\(1\) | any |
| cisco | finesse | 12.6\(1\) | any |
| cisco | finesse | 12.6\(1\) | any |
| cisco | finesse | 12.6\(2\) | any |
| cisco | finesse | 12.6\(2\) | any |
| cisco | finesse | 12.6\(2\) | any |
| cisco | finesse | 12.6\(2\) | any |
| cisco | finesse | 12.6\(2\) | any |
| cisco | finesse | 12.6\(2\) | any |
| cisco | socialminer | 10.5\(1\) | any |
| cisco | socialminer | 10.6\(1\) | any |
| cisco | socialminer | 10.6\(2\) | any |
| cisco | socialminer | 11.0\(1\) | any |
| cisco | socialminer | 11.5\(1\) | any |
| cisco | socialminer | 11.5\(1\)su1 | any |
| cisco | socialminer | 11.6\(1\) | any |
| cisco | socialminer | 11.6\(2\) | any |
| cisco | socialminer | 12.0\(1\) | any |
| cisco | socialminer | 12.0\(1\)es02 | any |
| cisco | socialminer | 12.0\(1\)es03 | any |
| cisco | socialminer | 12.0\(1\)es04 | any |
| cisco | socialminer | 12.5\(1\) | any |
| cisco | socialminer | 12.5\(1\)es01 | any |
| cisco | socialminer | 12.5\(1\)su1 | any |
| cisco | socialminer | 12.5\(1\)su2 | any |
| cisco | socialminer | 12.5\(1\)su3 | any |
| cisco | unified_communications_manager | 12.5\(1\) | any |
| cisco | unified_communications_manager | 12.5\(1\)su1 | any |
| cisco | unified_communications_manager | 12.5\(1\)su2 | any |
| cisco | unified_communications_manager | 12.5\(1\)su3 | any |
| cisco | unified_communications_manager | 12.5\(1\)su4 | any |
| cisco | unified_communications_manager | 12.5\(1\)su5 | any |
| cisco | unified_communications_manager | 12.5\(1\)su6 | any |
| cisco | unified_communications_manager | 12.5\(1\)su7 | any |
| cisco | unified_communications_manager | 12.5\(1\)su7a | any |
| cisco | unified_communications_manager | 12.5\(1\)su8 | any |
| cisco | unified_communications_manager | 12.5\(1\)su8a | any |
| cisco | unified_communications_manager | 12.5\(1\)su9 | any |
| cisco | unified_communications_manager_im_and_presence_service | 12.5\(1\) | any |
| cisco | unified_communications_manager_im_and_presence_service | 12.5\(1\)su1 | any |
| cisco | unified_communications_manager_im_and_presence_service | 12.5\(1\)su2 | any |
| cisco | unified_communications_manager_im_and_presence_service | 12.5\(1\)su3 | any |
| cisco | unified_communications_manager_im_and_presence_service | 12.5\(1\)su4 | any |
| cisco | unified_communications_manager_im_and_presence_service | 12.5\(1\)su5 | any |
| cisco | unified_communications_manager_im_and_presence_service | 12.5\(1\)su6 | any |
| cisco | unified_communications_manager_im_and_presence_service | 12.5\(1\)su7 | any |
| cisco | unified_communications_manager_im_and_presence_service | 12.5\(1\)su8 | any |
| cisco | unified_communications_manager_im_and_presence_service | 12.5\(1\)su9 | any |
| cisco | unified_contact_center_express | 8.5\(1\) | any |
| cisco | unified_contact_center_express | 9.0\(2\)su3es04 | any |
| cisco | unified_contact_center_express | 10.0\(1\)su1 | any |
| cisco | unified_contact_center_express | 10.0\(1\)su1es04 | any |
| cisco | unified_contact_center_express | 10.5\(1\) | any |
| cisco | unified_contact_center_express | 10.5\(1\)su1 | any |
| cisco | unified_contact_center_express | 10.5\(1\)su1es10 | any |
| cisco | unified_contact_center_express | 10.6\(1\) | any |
| cisco | unified_contact_center_express | 10.6\(1\)su1 | any |
| cisco | unified_contact_center_express | 10.6\(1\)su2 | any |
| cisco | unified_contact_center_express | 10.6\(1\)su2es04 | any |
| cisco | unified_contact_center_express | 10.6\(1\)su3 | any |
| cisco | unified_contact_center_express | 10.6\(1\)su3es01 | any |
| cisco | unified_contact_center_express | 10.6\(1\)su3es02 | any |
| cisco | unified_contact_center_express | 10.6\(1\)su3es03 | any |
| cisco | unified_contact_center_express | 11.0\(1\)su1 | any |
| cisco | unified_contact_center_express | 11.0\(1\)su1es02 | any |
| cisco | unified_contact_center_express | 11.0\(1\)su1es03 | any |
| cisco | unified_contact_center_express | 11.5\(1\)es01 | any |
| cisco | unified_contact_center_express | 11.5\(1\)su1 | any |
| cisco | unified_contact_center_express | 11.5\(1\)su1es01 | any |
| cisco | unified_contact_center_express | 11.5\(1\)su1es02 | any |
| cisco | unified_contact_center_express | 11.5\(1\)su1es03 | any |
| cisco | unified_contact_center_express | 11.6\(1\) | any |
| cisco | unified_contact_center_express | 11.6\(1\)es01 | any |
| cisco | unified_contact_center_express | 11.6\(1\)es02 | any |
| cisco | unified_contact_center_express | 11.6\(2\) | any |
| cisco | unified_contact_center_express | 11.6\(2\)es01 | any |
| cisco | unified_contact_center_express | 11.6\(2\)es02 | any |
| cisco | unified_contact_center_express | 11.6\(2\)es03 | any |
| cisco | unified_contact_center_express | 11.6\(2\)es04 | any |
| cisco | unified_contact_center_express | 11.6\(2\)es05 | any |
| cisco | unified_contact_center_express | 11.6\(2\)es06 | any |
| cisco | unified_contact_center_express | 11.6\(2\)es07 | any |
| cisco | unified_contact_center_express | 11.6\(2\)es08 | any |
| cisco | unified_contact_center_express | 12.0\(1\) | any |
| cisco | unified_contact_center_express | 12.0\(1\)es01 | any |
| cisco | unified_contact_center_express | 12.0\(1\)es02 | any |
| cisco | unified_contact_center_express | 12.0\(1\)es03 | any |
| cisco | unified_contact_center_express | 12.0\(1\)es04 | any |
| cisco | unified_contact_center_express | 12.5\(1\) | any |
| cisco | unified_contact_center_express | 12.5\(1\)_su01_es01 | any |
| cisco | unified_contact_center_express | 12.5\(1\)_su01_es02 | any |
| cisco | unified_contact_center_express | 12.5\(1\)_su01_es03 | any |
| cisco | unified_contact_center_express | 12.5\(1\)_su02_es01 | any |
| cisco | unified_contact_center_express | 12.5\(1\)_su02_es02 | any |
| cisco | unified_contact_center_express | 12.5\(1\)_su02_es03 | any |
| cisco | unified_contact_center_express | 12.5\(1\)_su02_es04 | any |
| cisco | unified_contact_center_express | 12.5\(1\)_su03_es01 | any |
| cisco | unified_contact_center_express | 12.5\(1\)_su03_es02 | any |
| cisco | unified_contact_center_express | 12.5\(1\)_su03_es03 | any |
| cisco | unified_contact_center_express | 12.5\(1\)_su03_es04 | any |
| cisco | unified_contact_center_express | 12.5\(1\)_su03_es05 | any |
| cisco | unified_contact_center_express | 12.5\(1\)_su03_es06 | any |
| cisco | unified_contact_center_express | 12.5\(1\)es01 | any |
| cisco | unified_contact_center_express | 12.5\(1\)es02 | any |
| cisco | unified_contact_center_express | 12.5\(1\)es03 | any |
| cisco | unified_contact_center_express | 12.5\(1\)su1 | any |
| cisco | unified_contact_center_express | 12.5\(1\)su2 | any |
| cisco | unified_contact_center_express | 12.5\(1\)su3 | any |
| cisco | unified_intelligence_center | * | <12.6\(2\)es_04 |
| cisco | unity_connection | 12.5\(1\) | any |
| cisco | unity_connection | 12.5\(1\)su1 | any |
| cisco | unity_connection | 12.5\(1\)su2 | any |
| cisco | unity_connection | 12.5\(1\)su3 | any |
| cisco | unity_connection | 12.5\(1\)su4 | any |
| cisco | unity_connection | 12.5\(1\)su5 | any |
| cisco | unity_connection | 12.5\(1\)su6 | any |
| cisco | unity_connection | 12.5\(1\)su7 | any |
| cisco | unity_connection | 12.5\(1\)su8 | any |
| cisco | unity_connection | 12.5\(1\)su8a | any |
| cisco | unity_connection | 12.5\(1\)su9 | any |
| cisco | virtualized_voice_browser | * | <12.6\(2\)es06 |
References 1
- sec.cloudapps.cisco.com https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-vos-command-inject-65s2UCYy
Remediation
No remediation data recorded yet
Check vendor advisories and the NVD entry for patch availability.