What is CVE-2026-20232?
CVE-2026-20232 is a stored cross-site scripting (XSS) vulnerability in the web-based management interface of Cisco Industrial Ethernet (IE) 1000 Series Switches. It could allow an authenticated, remote attacker to execute malicious scripts in the browser of an interface user. Cisco security updates should be applied to affected devices.
Azərbaycanca: CVE-2026-20232, Cisco Industrial Ethernet (IE) 1000 Series Switch-lərin veb idarəetmə interfeysində aşkarlanmış stored cross-site scripting (XSS) zəifliyidir. Bu zəiflik autentifikasiya olunmuş uzaq təcavüzkarın interfeys istifadəçilərinə qarşı hücum keçirməsinə imkan yaradır. Təsirə məruz qalan cihazlar üçün Cisco-nun təqdim edəcəyi təhlükəsizlik yeniləmələri tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-79; shared vendor: Cisco
FAQ2
Which Cisco devices are affected by CVE-2026-20232?
CVE-2026-20232 affects the web-based management interface of Cisco Industrial Ethernet (IE) 1000 Series Switches.
What can an attacker do by exploiting CVE-2026-20232?
An authenticated, remote attacker can conduct stored cross-site scripting (XSS) attacks in the browser of an interface user.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.