CVE-2025-20171
CVSS 3.1 Score 7.7 of 10 (high)
Details
Summary
CVE-2025-20171 is a vulnerability affecting the SNMP subsystem of Cisco IOS Software and Cisco IOS XE Software. It allows authenticated, remote attackers to cause a Denial of Service (DoS) condition on affected devices by improperly handling SNMP requests. The vulnerability arises from error handling issues and can lead to unexpected device reloads, resulting in a DoS condition. This vulnerability affects SNMP versions 1, 2c, and 3. To exploit it through SNMP v2c or earlier, attackers must have valid read-write or read-only community strings. For SNMP v3, valid user credentials are required.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.