CVE 6 MEDIUM

Cisco UCS Manager Software Command Injection Vulnerability_CVE-2025-20295

6 / 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N

Description

A vulnerability in the CLI of Cisco UCS Manager Software could allow an authenticated, local attacker with administrative privileges to read or create a file or overwrite any file on the file system of the underlying operating system of an affected device, including system files.
 
This vulnerability is due to insufficient input validation of command arguments supplied by the user. An attacker could exploit this vulnerability by authenticating to a device and submitting crafted input to the affected command. A successful exploit could allow the attacker to read or create a file or overwrite any file on the file system of the underlying operating system of the affected device, including system files. To exploit this vulnerability, the attacker must have valid administrative credentials on the affected device.

Basic Information

ID CVE-2025-20295
Source cisco
Published Aug 27, 2025 at 16:23
Modified Aug 27, 2025 at 17:38

Affected Product

Vendor Cisco
Product Cisco Unified Computing System (Managed)
Version 4.0(1a)
Affected Versions Cisco Cisco Unified Computing System (Managed) 4.0(1a)
Cisco Cisco Unified Computing System (Managed) 4.1(1d)
Cisco Cisco Unified Computing System (Managed) 4.0(4f)
Cisco Cisco Unified Computing System (Managed) 4.0(4c)
Cisco Cisco Unified Computing System (Managed) 4.0(2b)
Cisco Cisco Unified Computing System (Managed) 4.1(2a)
Cisco Cisco Unified Computing System (Managed) 4.0(4a)
Cisco Cisco Unified Computing System (Managed) 4.0(4e)
Cisco Cisco Unified Computing System (Managed) 3.2(3p)
Cisco Cisco Unified Computing System (Managed) 4.0(4h)
Cisco Cisco Unified Computing System (Managed) 3.2(3d)
Cisco Cisco Unified Computing System (Managed) 3.2(3l)
Cisco Cisco Unified Computing System (Managed) 3.2(3o)
Cisco Cisco Unified Computing System (Managed) 4.0(2a)
Cisco Cisco Unified Computing System (Managed) 4.1(1c)
Cisco Cisco Unified Computing System (Managed) 4.0(1b)
Cisco Cisco Unified Computing System (Managed) 3.2(3j)
Cisco Cisco Unified Computing System (Managed) 3.2(2e)
Cisco Cisco Unified Computing System (Managed) 4.1(1e)
Cisco Cisco Unified Computing System (Managed) 4.0(4d)
Cisco Cisco Unified Computing System (Managed) 3.2(1d)
Cisco Cisco Unified Computing System (Managed) 3.2(3i)
Cisco Cisco Unified Computing System (Managed) 4.0(4b)
Cisco Cisco Unified Computing System (Managed) 4.0(2e)
Cisco Cisco Unified Computing System (Managed) 4.1(1a)
Cisco Cisco Unified Computing System (Managed) 3.2(3h)
Cisco Cisco Unified Computing System (Managed) 4.0(4g)
Cisco Cisco Unified Computing System (Managed) 3.2(2c)
Cisco Cisco Unified Computing System (Managed) 3.2(3k)
Cisco Cisco Unified Computing System (Managed) 3.2(3g)
Cisco Cisco Unified Computing System (Managed) 3.2(2b)
Cisco Cisco Unified Computing System (Managed) 4.0(1d)
Cisco Cisco Unified Computing System (Managed) 3.2(3a)
Cisco Cisco Unified Computing System (Managed) 4.0(1c)
Cisco Cisco Unified Computing System (Managed) 3.2(3e)
Cisco Cisco Unified Computing System (Managed) 3.2(2d)
Cisco Cisco Unified Computing System (Managed) 4.0(4i)
Cisco Cisco Unified Computing System (Managed) 3.2(2f)
Cisco Cisco Unified Computing System (Managed) 4.0(2d)
Cisco Cisco Unified Computing System (Managed) 4.1(1b)
Cisco Cisco Unified Computing System (Managed) 3.2(3n)
Cisco Cisco Unified Computing System (Managed) 3.2(3b)
Cisco Cisco Unified Computing System (Managed) 4.1(2b)
Cisco Cisco Unified Computing System (Managed) 4.0(4k)
Cisco Cisco Unified Computing System (Managed) 4.1(3a)
Cisco Cisco Unified Computing System (Managed) 4.1(3b)
Cisco Cisco Unified Computing System (Managed) 4.1(2c)
Cisco Cisco Unified Computing System (Managed) 4.0(4l)
Cisco Cisco Unified Computing System (Managed) 4.1(4a)
Cisco Cisco Unified Computing System (Managed) 4.1(3c)
Cisco Cisco Unified Computing System (Managed) 4.1(3d)
Cisco Cisco Unified Computing System (Managed) 4.2(1c)
Cisco Cisco Unified Computing System (Managed) 4.2(1d)
Cisco Cisco Unified Computing System (Managed) 4.0(4m)
Cisco Cisco Unified Computing System (Managed) 4.1(3e)
Cisco Cisco Unified Computing System (Managed) 4.2(1f)
Cisco Cisco Unified Computing System (Managed) 4.1(3f)
Cisco Cisco Unified Computing System (Managed) 4.2(1i)
Cisco Cisco Unified Computing System (Managed) 4.1(3h)
Cisco Cisco Unified Computing System (Managed) 4.2(1k)
Cisco Cisco Unified Computing System (Managed) 4.2(1l)
Cisco Cisco Unified Computing System (Managed) 4.0(4n)
Cisco Cisco Unified Computing System (Managed) 4.2(1m)
Cisco Cisco Unified Computing System (Managed) 4.1(3i)
Cisco Cisco Unified Computing System (Managed) 4.2(2a)
Cisco Cisco Unified Computing System (Managed) 4.2(1n)
Cisco Cisco Unified Computing System (Managed) 4.1(3j)
Cisco Cisco Unified Computing System (Managed) 4.2(2c)
Cisco Cisco Unified Computing System (Managed) 4.2(2d)
Cisco Cisco Unified Computing System (Managed) 4.2(3b)
Cisco Cisco Unified Computing System (Managed) 4.1(3k)
Cisco Cisco Unified Computing System (Managed) 4.0(4o)
Cisco Cisco Unified Computing System (Managed) 4.2(2e)
Cisco Cisco Unified Computing System (Managed) 4.2(3d)
Cisco Cisco Unified Computing System (Managed) 4.2(3e)
Cisco Cisco Unified Computing System (Managed) 4.2(3g)
Cisco Cisco Unified Computing System (Managed) 4.1(3l)
Cisco Cisco Unified Computing System (Managed) 4.3(2b)
Cisco Cisco Unified Computing System (Managed) 4.2(3h)
Cisco Cisco Unified Computing System (Managed) 4.2(3i)
Cisco Cisco Unified Computing System (Managed) 4.3(2c)
Cisco Cisco Unified Computing System (Managed) 4.1(3m)
Cisco Cisco Unified Computing System (Managed) 4.3(2e)
Cisco Cisco Unified Computing System (Managed) 4.3(3a)
Cisco Cisco Unified Computing System (Managed) 4.2(3j)
Cisco Cisco Unified Computing System (Managed) 4.3(3c)
Cisco Cisco Unified Computing System (Managed) 4.3(4a)
Cisco Cisco Unified Computing System (Managed) 4.2(3k)
Cisco Cisco Unified Computing System (Managed) 4.3(4b)
Cisco Cisco Unified Computing System (Managed) 4.3(4c)
Cisco Cisco Unified Computing System (Managed) 4.2(3l)
Cisco Cisco Unified Computing System (Managed) 4.3(4d)
Cisco Cisco Unified Computing System (Managed) 4.3(2f)
Cisco Cisco Unified Computing System (Managed) 4.2(3m)
Cisco Cisco Unified Computing System (Managed) 4.3(5a)
Cisco Cisco Unified Computing System (Managed) 4.3(4e)
Cisco Cisco Unified Computing System (Managed) 4.1(3n)
Cisco Cisco Unified Computing System (Managed) 4.3(4f)
Cisco Cisco Unified Computing System (Managed) 4.2(3n)
Cisco Cisco Unified Computing System (Managed) 4.3(5c)
Cisco Cisco Unified Computing System (Managed) 4.2(3o)
Cisco Cisco Unified Computing System (Managed) 4.3(5d)
Cisco Cisco Unified Computing System (Managed) 4.3(6a)
Cisco Cisco Unified Computing System (Managed) 4.3(6b)
Cisco Cisco Unified Computing System (Managed) 4.3(5e)

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.