CVE-2026-20200
Cisco Integrated Management Controller Argument Injection and Remote Code Execution Vulnerability
Description
A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with low privileges to execute arbitrary commands on the underlying operating system of an affected system and elevate privileges to root. This vulnerability is due to improper validation of user-supplied input. An attacker could exploit this vulnerability by entering crafted inputs to the web-based management interface of the affected software. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system as the root user.
CVSS Vector Breakdown
AV:NAttack VectorAC:LAttack ComplexityPR:LPrivileges RequiredUI:NUser InteractionS:UScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Exploitability
Exploit details including PoC links, Metasploit modules, and scanner templates are available after registration.
View exploit detailsReferences
- Week in review: Cisco fixes IMC bug, Patch Tuesday forecast, Black Hat USA 2026en-us·Help Net Security·
- Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugsen·The Hacker News· Advisory Cisco Catalyst SD-WAN Software rce
- Critical Cisco IMC bug gives attackers root, PoC is out (CVE-2026-20200)en-us·Help Net Security· PoC Integrated Management Controller (IMC) rce
- Cisco Patches Critical SD-WAN, IOS XE, FMC Vulnerabilitiesen-us·SecurityWeek· Patch SD-WAN rce
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2026-20200 and every CVE in our database. Create a free account — no credit card required.
Create Free Account