CyberzSOC

Publication detail
← Back to advisories & guidance

2025-010: Critical Vulnerability in Cisco IOS XR Software ↗ source

March 14, 2025 CERT-EU Advisory

Summary

On March 13, 2025, CISCO released an advisory regarding a critical vulnerability identified in It is recommended updating affected assets as soon as possible. The vulnerability CVE-2025-20138, with a CVSS score of 8.8, stems from insufficient input validation in specific CLI (Command Line Interface) commands within the 64-bit version of Cisco IOS XR Software. Attackers can exploit this by crafting malicious arguments that escalate their privileges to root level. This enables full control over the device, potentially leading to unauthorised command execution, data manipulation, or system destabilisation [2]. The following Cisco IOS XR 64-bit Software versions are affected by the vulnerability: CERT-EU recommends updating the affected products as soon as possible to the latest version. To identify if this vulnerability has been exploited, monitor system logs for any unauthorised root-level command executions.

News Coverage

No coverage found in monitored research blogs or news feeds.

CVEs Referenced in This Publication

CVECVSSAffected
CVE-2025-20138 8.8 High Cisco Cisco IOS XR Software A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to execute arbitrary commands as root on the underly…

Extracted from the publication text. Each CVE links to its tracked detail page.

Vendors Named in This Publication

Each vendor links to its Known Exploited Vulnerabilities catalog page. Only vendors that appear in the KEV catalog are listed, either because the publication cites one of their KEV entries or because it names them directly.