cbcvebase.
CVE-2024-20418
published 2024-11-06

CVE-2024-20418: A vulnerability in the web-based management interface of Cisco Unified Industrial Wireless Software for Cisco Ultra-Reliable Wireless Backhaul (URWB) Access…

PriorityP277critical10CVSS 3.1
AVNACLPRNUINSCCHIHAH
EPSS
3.15%
86.5th percentile
A vulnerability in the web-based management interface of Cisco Unified Industrial Wireless Software for Cisco Ultra-Reliable Wireless Backhaul (URWB) Access Points could allow an unauthenticated, remote attacker to perform command injection attacks with root privileges on the underlying operating system. This vulnerability is due to improper validation of input to the web-based management interface. An attacker could exploit this vulnerability by sending crafted HTTP requests to the web-based management interface of an affected system. A successful exploit could allow the attacker to execute arbitrary commands with root privileges on the underlying operating system of the affected device.

Affected

2 ranges
VendorProductVersion rangeFixed in
ciscocisco_aironet_access_point_software
ciscounified_industrial_wireless

Detection & IOCsextracted from sources · hover to see the quote

commandshow mpls-config
  • Detect crafted HTTP requests targeting the web-based management interface of Cisco URWB Access Points; exploitation is unauthenticated and requires no user interaction.
  • Scope detection to devices where URWB operating mode is enabled; if 'show mpls-config' CLI command is unavailable, the device is not affected.
  • Affected hardware includes Catalyst IW9165D Heavy Duty Access Points, Catalyst IW9165E Rugged Access Points and Wireless Clients, and Catalyst IW9167E Heavy Duty Access Points running vulnerable software with URWB mode enabled.
  • ·No workarounds exist for this vulnerability; patching via Cisco software updates is the only remediation.
  • ·At time of advisory publication, no public exploit code or in-the-wild exploitation had been confirmed by Cisco PSIRT.

CVSS provenance

nvdv3.110.0CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
vendor_cisco10.0CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.