CVE-2025-20271 | Cisco Meraki MX/Meraki Z AnyConnect VPN Server uninitialized variable (cisco-sa-meraki-mx-vpn-dos-sM5GCfm7 / EUVD-2025-18656)
A vulnerability classified as critical was found in Cisco Meraki MX and Meraki Z. Affected by this vulnerability is an unknown functionality of the component AnyConnect VPN Server. The manipulation leads to use of uninitialized variable.
This vulnerability is known as CVE-2025-20271. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.