CVE-2025-20186 | Cisco IOS XE up to 17.14.1a LAN Controller Feature os command injection (cisco-sa-webui-cmdinj-gVn3OKNC)
A vulnerability was found in Cisco IOS XE. It has been classified as critical. Affected is an unknown function of the component LAN Controller Feature. The manipulation leads to os command injection.
This vulnerability is traded as CVE-2025-20186. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.