{"dataType":"CVE_RECORD","dataVersion":"5.1","cveMetadata":{"cveId":"CVE-2025-20218","assignerOrgId":"d1c1063e-7a18-46af-9102-31f8928bc633","state":"PUBLISHED","assignerShortName":"cisco","dateReserved":"2024-10-10T19:15:13.233Z","datePublished":"2025-08-14T16:28:33.831Z","dateUpdated":"2025-08-14T19:20:58.856Z"},"containers":{"cna":{"title":"Cisco Secure Firepower Management Center Software XPATH Injection Vulnerability","metrics":[{"format":"cvssV3_1","cvssV3_1":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N","baseScore":4.9,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"HIGH","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"}}],"descriptions":[{"lang":"en","value":"A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, remote attacker to retrieve sensitive information from an affected device.\r\n\r\nThis vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a crafted request to the web-based management interface of an affected device. A successful exploit could allow the attacker to retrieve sensitive information from the affected device.\r\nTo exploit this vulnerability, the attacker must have valid administrative credentials."}],"references":[{"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-xpathinj-COrThdMb","name":"cisco-sa-fmc-xpathinj-COrThdMb"}],"exploits":[{"lang":"en","value":"The Cisco Product Security Incident Response Team (PSIRT) is not aware of any public announcements or malicious use of the vulnerability that is described in this advisory."}],"source":{"advisory":"cisco-sa-fmc-xpathinj-COrThdMb","discovery":"INTERNAL","defects":["CSCwj06006"]},"problemTypes":[{"descriptions":[{"lang":"en","description":"Improper Neutralization of Data within XPath Expressions ('XPath Injection')","type":"cwe","cweId":"CWE-643"}]}],"affected":[{"vendor":"Cisco","product":"Cisco Firepower Management Center","versions":[{"version":"6.2.3.12","status":"affected"},{"version":"6.2.3.1","status":"affected"},{"version":"6.2.3.10","status":"affected"},{"version":"6.2.3.8","status":"affected"},{"version":"6.4.0.6","status":"affected"},{"version":"6.2.3","status":"affected"},{"version":"6.4.0.7","status":"affected"},{"version":"6.2.3.13","status":"affected"},{"version":"6.2.3.5","status":"affected"},{"version":"6.4.0.4","status":"affected"},{"version":"6.2.3.9","status":"affected"},{"version":"6.2.3.14","status":"affected"},{"version":"6.4.0.1","status":"affected"},{"version":"6.2.3.6","status":"affected"},{"version":"6.2.3.11","status":"affected"},{"version":"6.4.0.8","status":"affected"},{"version":"6.2.3.2","status":"affected"},{"version":"6.4.0.2","status":"affected"},{"version":"6.2.3.3","status":"affected"},{"version":"6.4.0.3","status":"affected"},{"version":"6.2.3.7","status":"affected"},{"version":"6.2.3.4","status":"affected"},{"version":"6.4.0.5","status":"affected"},{"version":"6.4.0","status":"affected"},{"version":"6.2.3.15","status":"affected"},{"version":"6.6.0","status":"affected"},{"version":"6.4.0.9","status":"affected"},{"version":"6.2.3.16","status":"affected"},{"version":"6.6.0.1","status":"affected"},{"version":"6.6.1","status":"affected"},{"version":"6.4.0.10","status":"affected"},{"version":"6.4.0.11","status":"affected"},{"version":"6.6.3","status":"affected"},{"version":"6.6.4","status":"affected"},{"version":"6.4.0.12","status":"affected"},{"version":"7.0.0","status":"affected"},{"version":"6.2.3.17","status":"affected"},{"version":"7.0.0.1","status":"affected"},{"version":"6.6.5","status":"affected"},{"version":"7.0.1","status":"affected"},{"version":"6.6.5.1","status":"affected"},{"version":"6.4.0.13","status":"affected"},{"version":"7.0.1.1","status":"affected"},{"version":"6.2.3.18","status":"affected"},{"version":"6.4.0.14","status":"affected"},{"version":"6.6.5.2","status":"affected"},{"version":"7.0.2","status":"affected"},{"version":"6.4.0.15","status":"affected"},{"version":"7.2.0","status":"affected"},{"version":"7.0.2.1","status":"affected"},{"version":"7.0.3","status":"affected"},{"version":"6.6.7","status":"affected"},{"version":"7.2.0.1","status":"affected"},{"version":"7.0.4","status":"affected"},{"version":"7.2.1","status":"affected"},{"version":"7.0.5","status":"affected"},{"version":"6.4.0.16","status":"affected"},{"version":"7.3.0","status":"affected"},{"version":"7.2.2","status":"affected"},{"version":"6.6.7.1","status":"affected"},{"version":"7.3.1","status":"affected"},{"version":"7.2.3","status":"affected"},{"version":"7.2.3.1","status":"affected"},{"version":"7.2.4","status":"affected"},{"version":"7.0.6","status":"affected"},{"version":"7.2.4.1","status":"affected"},{"version":"7.2.5","status":"affected"},{"version":"7.3.1.1","status":"affected"},{"version":"7.4.0","status":"affected"},{"version":"6.4.0.17","status":"affected"},{"version":"7.0.6.1","status":"affected"},{"version":"7.2.5.1","status":"affected"},{"version":"7.4.1","status":"affected"},{"version":"7.2.6","status":"affected"},{"version":"7.4.1.1","status":"affected"},{"version":"7.0.6.2","status":"affected"},{"version":"6.4.0.18","status":"affected"},{"version":"6.6.7.2","status":"affected"},{"version":"7.2.7","status":"affected"},{"version":"7.2.5.2","status":"affected"},{"version":"7.3.1.2","status":"affected"},{"version":"7.2.8","status":"affected"},{"version":"7.4.2","status":"affected"},{"version":"7.2.8.1","status":"affected"},{"version":"7.0.6.3","status":"affected"},{"version":"7.4.2.1","status":"affected"},{"version":"7.2.9","status":"affected"}],"defaultStatus":"unknown"}],"providerMetadata":{"orgId":"d1c1063e-7a18-46af-9102-31f8928bc633","shortName":"cisco","dateUpdated":"2025-08-14T16:28:33.831Z"}},"adp":[{"metrics":[{"other":{"type":"ssvc","content":{"timestamp":"2025-08-14T18:40:39.680564Z","id":"CVE-2025-20218","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2025-08-14T19:20:58.856Z"}}]}}