CVE-2025-20294 | Cisco Unified Computing System up to 4.3(6b) Web-based Management Interface/CLI os command injection (cisco-sa-ucs-multi-cmdinj-E4Ukjyrz / EUVD-2025-25943)
A vulnerability was found in Cisco Unified Computing System. It has been classified as critical. Affected by this vulnerability is an unknown functionality of the component Web-based Management Interface/CLI. Performing manipulation results in os command injection.
This vulnerability is known as CVE-2025-20294. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is recommended.