What is CVE-2026-20200?
A vulnerability in the web-based management interface of Cisco IMC allows an authenticated, low-privileged remote attacker to execute arbitrary commands on the OS and elevate privileges to root. This is due to improper validation within the interface. Awaiting security patches is recommended for affected systems.
Azərbaycanca: Cisco IMC-in veb idarəetmə interfeysində autentifikasiya olunmuş, aşağı səviyyəli uzaqdan hücumçuya əməliyyat sistemində root səviyyəsinə qədər ixtiyari əmrlər icra etməyə imkan verən boşluqdur. Bu, imtiyazların yüksəldilməsinə səbəb olur. Təsirə məruz qalan sistemlərdə təhlükəsizlik yamalarını gözləmək tövsiyə edilir.
Related CVEs
link basis: shared vendor: Cisco
FAQ2
What type of attacker can gain root privileges on the system through CVE-2026-20200?
An authenticated, low-privileged remote attacker.
What is the current solution for systems affected by CVE-2026-20200?
It is recommended to await security patches.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.