{"id":18945,"date":"2025-09-24T17:54:56","date_gmt":"2025-09-24T17:54:56","guid":{"rendered":"http:\/\/localhost\/?p=18945"},"modified":"2025-09-24T17:54:56","modified_gmt":"2025-09-24T17:54:56","slug":"cve-2025-20240","status":"publish","type":"post","link":"https:\/\/zero.redgem.net\/?p=18945","title":{"rendered":"CVE-2025-20240_CVE-2025-20240"},"content":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;&#8221;,&#8221;description&#8221;:&#8221;A vulnerability in the web UI of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting attack (XSS) on an affected device.\\r\\n\\r This vulnerability is due to improper sanitization of user-supplied input. An attacker could exploit this vulnerability by persuading a user to click a malicious link. A successful exploit could allow the attacker to execute a reflected XSS attack and steal user cookies from the affected device.&#8221;,&#8221;published&#8221;:&#8221;2025-09-24T17:14:34.470Z&#8221;,&#8221;modified&#8221;:&#8221;2025-09-24T17:31:12.331Z&#8221;,&#8221;type&#8221;:&#8221;cve&#8221;,&#8221;title&#8221;:&#8221;CVE-2025-20240&#8243;,&#8221;source&#8221;:&#8221;cisco&#8221;,&#8221;references&#8221;:&#8221;https:\/\/sec.cloudapps.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-webui-xss-VWyDgjOU&#8221;,&#8221;id&#8221;:&#8221;CVE-2025-20240&#8243;,&#8221;bulletinFamily&#8221;:&#8221;&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:null,&#8221;sourceData&#8221;:&#8221;Cisco Cisco IOS XE Software 16.6.1\\nCisco Cisco IOS XE Software 16.6.2\\nCisco Cisco IOS XE Software 16.6.3\\nCisco Cisco IOS XE Software 16.6.4\\nCisco Cisco IOS XE Software 16.6.5\\nCisco Cisco IOS XE Software 16.6.4a\\nCisco Cisco IOS XE Software 16.6.5a\\nCisco Cisco IOS XE Software 16.6.6\\nCisco Cisco IOS XE Software 16.6.7\\nCisco Cisco IOS XE Software 16.6.8\\nCisco Cisco IOS XE Software 16.6.9\\nCisco Cisco IOS XE Software 16.6.10\\nCisco Cisco IOS XE Software 16.7.1\\nCisco Cisco IOS XE Software 16.7.1a\\nCisco Cisco IOS XE Software 16.7.1b\\nCisco Cisco IOS XE Software 16.7.2\\nCisco Cisco IOS XE Software 16.7.3\\nCisco Cisco IOS XE Software 16.7.4\\nCisco Cisco IOS XE Software 16.8.1\\nCisco Cisco IOS XE Software 16.8.1a\\nCisco Cisco IOS XE Software 16.8.1b\\nCisco Cisco IOS XE Software 16.8.1s\\nCisco Cisco IOS XE Software 16.8.1c\\nCisco Cisco IOS XE Software 16.8.1d\\nCisco Cisco IOS XE Software 16.8.2\\nCisco Cisco IOS XE Software 16.8.1e\\nCisco Cisco IOS XE Software 16.8.3\\nCisco Cisco IOS XE Software 16.9.1\\nCisco Cisco IOS XE Software 16.9.2\\nCisco Cisco IOS XE Software 16.9.1a\\nCisco Cisco IOS XE Software 16.9.1b\\nCisco Cisco IOS XE Software 16.9.1s\\nCisco Cisco IOS XE Software 16.9.3\\nCisco Cisco IOS XE Software 16.9.4\\nCisco Cisco IOS XE Software 16.9.3a\\nCisco Cisco IOS XE Software 16.9.5\\nCisco Cisco IOS XE Software 16.9.5f\\nCisco Cisco IOS XE Software 16.9.6\\nCisco Cisco IOS XE Software 16.9.7\\nCisco Cisco IOS XE Software 16.9.8\\nCisco Cisco IOS XE Software 16.10.1\\nCisco Cisco IOS XE Software 16.10.1a\\nCisco Cisco IOS XE Software 16.10.1b\\nCisco Cisco IOS XE Software 16.10.1s\\nCisco Cisco IOS XE Software 16.10.1c\\nCisco Cisco IOS XE Software 16.10.1e\\nCisco Cisco IOS XE Software 16.10.1d\\nCisco Cisco IOS XE Software 16.10.2\\nCisco Cisco IOS XE Software 16.10.1f\\nCisco Cisco IOS XE Software 16.10.1g\\nCisco Cisco IOS XE Software 16.10.3\\nCisco Cisco IOS XE Software 16.11.1\\nCisco Cisco IOS XE Software 16.11.1a\\nCisco Cisco IOS XE Software 16.11.1b\\nCisco Cisco IOS XE Software 16.11.2\\nCisco Cisco IOS XE Software 16.11.1s\\nCisco Cisco IOS XE Software 16.12.1\\nCisco Cisco IOS XE Software 16.12.1s\\nCisco Cisco IOS XE Software 16.12.1a\\nCisco Cisco IOS XE Software 16.12.1c\\nCisco Cisco IOS XE Software 16.12.1w\\nCisco Cisco IOS XE Software 16.12.2\\nCisco Cisco IOS XE Software 16.12.1y\\nCisco Cisco IOS XE Software 16.12.2a\\nCisco Cisco IOS XE Software 16.12.3\\nCisco Cisco IOS XE Software 16.12.8\\nCisco Cisco IOS XE Software 16.12.2s\\nCisco Cisco IOS XE Software 16.12.1x\\nCisco Cisco IOS XE Software 16.12.1t\\nCisco Cisco IOS XE Software 16.12.4\\nCisco Cisco IOS XE Software 16.12.3s\\nCisco Cisco IOS XE Software 16.12.3a\\nCisco Cisco IOS XE Software 16.12.4a\\nCisco Cisco IOS XE Software 16.12.5\\nCisco Cisco IOS XE Software 16.12.6\\nCisco Cisco IOS XE Software 16.12.1z1\\nCisco Cisco IOS XE Software 16.12.5a\\nCisco Cisco IOS XE Software 16.12.5b\\nCisco Cisco IOS XE Software 16.12.1z2\\nCisco Cisco IOS XE Software 16.12.6a\\nCisco Cisco IOS XE Software 16.12.7\\nCisco Cisco IOS XE Software 16.12.9\\nCisco Cisco IOS XE Software 16.12.10\\nCisco Cisco IOS XE Software 16.12.10a\\nCisco Cisco IOS XE Software 16.12.11\\nCisco Cisco IOS XE Software 16.12.12\\nCisco Cisco IOS XE Software 16.12.13\\nCisco Cisco IOS XE Software 17.1.1\\nCisco Cisco IOS XE Software 17.1.1a\\nCisco Cisco IOS XE Software 17.1.1s\\nCisco Cisco IOS XE Software 17.1.1t\\nCisco Cisco IOS XE Software 17.1.3\\nCisco Cisco IOS XE Software 17.2.1\\nCisco Cisco IOS XE Software 17.2.1r\\nCisco Cisco IOS XE Software 17.2.1a\\nCisco Cisco IOS XE Software 17.2.1v\\nCisco Cisco IOS XE Software 17.2.2\\nCisco Cisco IOS XE Software 17.2.3\\nCisco Cisco IOS XE Software 17.3.1\\nCisco Cisco IOS XE Software 17.3.2\\nCisco Cisco IOS XE Software 17.3.3\\nCisco Cisco IOS XE Software 17.3.1a\\nCisco Cisco IOS XE Software 17.3.1w\\nCisco Cisco IOS XE Software 17.3.2a\\nCisco Cisco IOS XE Software 17.3.1x\\nCisco Cisco IOS XE Software 17.3.1z\\nCisco Cisco IOS XE Software 17.3.4\\nCisco Cisco IOS XE Software 17.3.5\\nCisco Cisco IOS XE Software 17.3.4a\\nCisco Cisco IOS XE Software 17.3.6\\nCisco Cisco IOS XE Software 17.3.4b\\nCisco Cisco IOS XE Software 17.3.4c\\nCisco Cisco IOS XE Software 17.3.5a\\nCisco Cisco IOS XE Software 17.3.5b\\nCisco Cisco IOS XE Software 17.3.7\\nCisco Cisco IOS XE Software 17.3.8\\nCisco Cisco IOS XE Software 17.3.8a\\nCisco Cisco IOS XE Software 17.4.1\\nCisco Cisco IOS XE Software 17.4.2\\nCisco Cisco IOS XE Software 17.4.1a\\nCisco Cisco IOS XE Software 17.4.1b\\nCisco Cisco IOS XE Software 17.4.2a\\nCisco Cisco IOS XE Software 17.5.1\\nCisco Cisco IOS XE Software 17.5.1a\\nCisco Cisco IOS XE Software 17.6.1\\nCisco Cisco IOS XE Software 17.6.2\\nCisco Cisco IOS XE Software 17.6.1w\\nCisco Cisco IOS XE Software 17.6.1a\\nCisco Cisco IOS XE Software 17.6.1x\\nCisco Cisco IOS XE Software 17.6.3\\nCisco Cisco IOS XE Software 17.6.1y\\nCisco Cisco IOS XE Software 17.6.1z\\nCisco Cisco IOS XE Software 17.6.3a\\nCisco Cisco IOS XE Software 17.6.4\\nCisco Cisco IOS XE Software 17.6.1z1\\nCisco Cisco IOS XE Software 17.6.5\\nCisco Cisco IOS XE Software 17.6.6\\nCisco Cisco IOS XE Software 17.6.6a\\nCisco Cisco IOS XE Software 17.6.5a\\nCisco Cisco IOS XE Software 17.6.7\\nCisco Cisco IOS XE Software 17.6.8\\nCisco Cisco IOS XE Software 17.6.8a\\nCisco Cisco IOS XE Software 17.7.1\\nCisco Cisco IOS XE Software 17.7.1a\\nCisco Cisco IOS XE Software 17.7.1b\\nCisco Cisco IOS XE Software 17.7.2\\nCisco Cisco IOS XE Software 17.10.1\\nCisco Cisco IOS XE Software 17.10.1a\\nCisco Cisco IOS XE Software 17.10.1b\\nCisco Cisco IOS XE Software 17.8.1\\nCisco Cisco IOS XE Software 17.8.1a\\nCisco Cisco IOS XE Software 17.9.1\\nCisco Cisco IOS XE Software 17.9.1w\\nCisco Cisco IOS XE Software 17.9.2\\nCisco Cisco IOS XE Software 17.9.1a\\nCisco Cisco IOS XE Software 17.9.1x\\nCisco Cisco IOS XE Software 17.9.1y\\nCisco Cisco IOS XE Software 17.9.3\\nCisco Cisco IOS XE Software 17.9.2a\\nCisco Cisco IOS XE Software 17.9.1&#215;1\\nCisco Cisco IOS XE Software 17.9.3a\\nCisco Cisco IOS XE Software 17.9.4\\nCisco Cisco IOS XE Software 17.9.1y1\\nCisco Cisco IOS XE Software 17.9.5\\nCisco Cisco IOS XE Software 17.9.4a\\nCisco Cisco IOS XE Software 17.9.5a\\nCisco Cisco IOS XE Software 17.9.5b\\nCisco Cisco IOS XE Software 17.9.6\\nCisco Cisco IOS XE Software 17.9.6a\\nCisco Cisco IOS XE Software 17.9.7\\nCisco Cisco IOS XE Software 17.9.5e\\nCisco Cisco IOS XE Software 17.9.5f\\nCisco Cisco IOS XE Software 17.9.7a\\nCisco Cisco IOS XE Software 17.9.7b\\nCisco Cisco IOS XE Software 17.11.1\\nCisco Cisco IOS XE Software 17.11.1a\\nCisco Cisco IOS XE Software 17.12.1\\nCisco Cisco IOS XE Software 17.12.1w\\nCisco Cisco IOS XE Software 17.12.1a\\nCisco Cisco IOS XE Software 17.12.1x\\nCisco Cisco IOS XE Software 17.12.2\\nCisco Cisco IOS XE Software 17.12.3\\nCisco Cisco IOS XE Software 17.12.2a\\nCisco Cisco IOS XE Software 17.12.1y\\nCisco Cisco IOS XE Software 17.12.1z\\nCisco Cisco IOS XE Software 17.12.4\\nCisco Cisco IOS XE Software 17.12.3a\\nCisco Cisco IOS XE Software 17.12.1z1\\nCisco Cisco IOS XE Software 17.12.1z2\\nCisco Cisco IOS XE Software 17.12.4a\\nCisco Cisco IOS XE Software 17.12.5\\nCisco Cisco IOS XE Software 17.12.4b\\nCisco Cisco IOS XE Software 17.12.1z3\\nCisco Cisco IOS XE Software 17.12.5a\\nCisco Cisco IOS XE Software 17.12.1z4\\nCisco Cisco IOS XE Software 17.12.5b\\nCisco Cisco IOS XE Software 17.12.5c\\nCisco Cisco IOS XE Software 17.13.1\\nCisco Cisco IOS XE Software 17.13.1a\\nCisco Cisco IOS XE Software 17.14.1\\nCisco Cisco IOS XE Software 17.14.1a\\nCisco Cisco IOS XE Software 17.15.1\\nCisco Cisco IOS XE Software 17.15.1w\\nCisco Cisco IOS XE Software 17.15.1a\\nCisco Cisco IOS XE Software 17.15.2\\nCisco Cisco IOS XE Software 17.15.1b\\nCisco Cisco IOS XE Software 17.15.1x\\nCisco Cisco IOS XE Software 17.15.1z\\nCisco Cisco IOS XE Software 17.15.3\\nCisco Cisco IOS XE Software 17.15.2c\\nCisco Cisco IOS XE Software 17.15.2a\\nCisco Cisco IOS XE Software 17.15.1y\\nCisco Cisco IOS XE Software 17.15.2b\\nCisco Cisco IOS XE Software 17.15.3a\\nCisco Cisco IOS XE Software 17.15.3b\\nCisco Cisco IOS XE Software 17.16.1\\nCisco Cisco IOS XE Software 17.16.1a&#8221;,&#8221;sourceHref&#8221;:&#8221;&#8221;,&#8221;cvss&#8221;:{&#8220;score&#8221;:6.1,&#8221;severity&#8221;:&#8221;MEDIUM&#8221;,&#8221;vector&#8221;:&#8221;CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N&#8221;,&#8221;version&#8221;:&#8221;3.1&#8243;},&#8221;cvss2&#8243;:{},&#8221;cvss3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;,&#8221;cvssV3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;}},&#8221;href&#8221;:&#8221;&#8221;,&#8221;category_name&#8221;:&#8221;CVE&#8221;,&#8221;post_link&#8221;:&#8221;&#8221;,&#8221;product&#8221;:&#8221;Cisco IOS XE Software&#8221;,&#8221;version&#8221;:&#8221;16.6.1&#8243;,&#8221;vendor&#8221;:&#8221;Cisco&#8221;,&#8221;ai_description&#8221;:&#8221;&#8221;,&#8221;ai_severity&#8221;:&#8221;&#8221;,&#8221;ai_vendor&#8221;:&#8221;&#8221;,&#8221;ai_product&#8221;:&#8221;&#8221;,&#8221;ai_version&#8221;:&#8221;&#8221;,&#8221;ai_score&#8221;:0}<\/p>\n","protected":false},"excerpt":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;&#8221;,&#8221;description&#8221;:&#8221;A vulnerability in the web UI of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting attack (XSS)&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2],"tags":[6,8,31,12,21,13,7,11,5],"class_list":["post-18945","post","type-post","status-publish","format-standard","hentry","category-category_cve","tag-cve","tag-cvss","tag-cvss-61","tag-exploit","tag-medium","tag-news","tag-security","tag-tapic","tag-vulnerability"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>CVE-2025-20240_CVE-2025-20240 - zero redgem<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/zero.redgem.net\/?p=18945\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"CVE-2025-20240_CVE-2025-20240 - zero redgem\" \/>\n<meta property=\"og:description\" content=\"{&#8220;lastseen&#8221;:&#8221;&#8221;,&#8221;description&#8221;:&#8221;A vulnerability in the web UI of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting attack (XSS)...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/zero.redgem.net\/?p=18945\" \/>\n<meta property=\"og:site_name\" content=\"zero redgem\" \/>\n<meta property=\"article:published_time\" content=\"2025-09-24T17:54:56+00:00\" \/>\n<meta name=\"author\" content=\"invoker\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"invoker\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"7 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=18945#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=18945\"},\"author\":{\"name\":\"invoker\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\"},\"headline\":\"CVE-2025-20240_CVE-2025-20240\",\"datePublished\":\"2025-09-24T17:54:56+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=18945\"},\"wordCount\":1410,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"keywords\":[\"CVE\",\"CVSS\",\"CVSS-6.1\",\"exploit\",\"MEDIUM\",\"news\",\"Security\",\"tapic\",\"Vulnerability\"],\"articleSection\":[\"category_cve\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=18945#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=18945\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?p=18945\",\"name\":\"CVE-2025-20240_CVE-2025-20240 - zero redgem\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\"},\"datePublished\":\"2025-09-24T17:54:56+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=18945#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=18945\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=18945#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/zero.redgem.net\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"CVE-2025-20240_CVE-2025-20240\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"name\":\"zero redgem\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/zero.redgem.net\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\",\"name\":\"zero redgem\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"\",\"contentUrl\":\"\",\"width\":191,\"height\":188,\"caption\":\"zero redgem\"},\"image\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\",\"name\":\"invoker\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"caption\":\"invoker\"},\"sameAs\":[\"https:\\\/\\\/zero.redgem.net\"],\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?author=1\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"CVE-2025-20240_CVE-2025-20240 - zero redgem","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/zero.redgem.net\/?p=18945","og_locale":"en_US","og_type":"article","og_title":"CVE-2025-20240_CVE-2025-20240 - zero redgem","og_description":"{&#8220;lastseen&#8221;:&#8221;&#8221;,&#8221;description&#8221;:&#8221;A vulnerability in the web UI of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting attack (XSS)...","og_url":"https:\/\/zero.redgem.net\/?p=18945","og_site_name":"zero redgem","article_published_time":"2025-09-24T17:54:56+00:00","author":"invoker","twitter_card":"summary_large_image","twitter_misc":{"Written by":"invoker","Est. reading time":"7 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/zero.redgem.net\/?p=18945#article","isPartOf":{"@id":"https:\/\/zero.redgem.net\/?p=18945"},"author":{"name":"invoker","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca"},"headline":"CVE-2025-20240_CVE-2025-20240","datePublished":"2025-09-24T17:54:56+00:00","mainEntityOfPage":{"@id":"https:\/\/zero.redgem.net\/?p=18945"},"wordCount":1410,"commentCount":0,"publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"keywords":["CVE","CVSS","CVSS-6.1","exploit","MEDIUM","news","Security","tapic","Vulnerability"],"articleSection":["category_cve"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/zero.redgem.net\/?p=18945#respond"]}]},{"@type":"WebPage","@id":"https:\/\/zero.redgem.net\/?p=18945","url":"https:\/\/zero.redgem.net\/?p=18945","name":"CVE-2025-20240_CVE-2025-20240 - zero redgem","isPartOf":{"@id":"https:\/\/zero.redgem.net\/#website"},"datePublished":"2025-09-24T17:54:56+00:00","breadcrumb":{"@id":"https:\/\/zero.redgem.net\/?p=18945#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/zero.redgem.net\/?p=18945"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/zero.redgem.net\/?p=18945#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/zero.redgem.net\/"},{"@type":"ListItem","position":2,"name":"CVE-2025-20240_CVE-2025-20240"}]},{"@type":"WebSite","@id":"https:\/\/zero.redgem.net\/#website","url":"https:\/\/zero.redgem.net\/","name":"zero redgem","description":"","publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/zero.redgem.net\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/zero.redgem.net\/#organization","name":"zero redgem","url":"https:\/\/zero.redgem.net\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/","url":"","contentUrl":"","width":191,"height":188,"caption":"zero redgem"},"image":{"@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca","name":"invoker","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","caption":"invoker"},"sameAs":["https:\/\/zero.redgem.net"],"url":"https:\/\/zero.redgem.net\/?author=1"}]}},"_links":{"self":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/18945","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=18945"}],"version-history":[{"count":0,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/18945\/revisions"}],"wp:attachment":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=18945"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=18945"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=18945"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}