{"id":"CVE-2026-20089","title":"A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with administrative privileges to conduct a stored XSS attack against a user of the interface.\r\n\r\nThis vulnerability is due …","summary":"A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with administrative privileges to conduct a stored XSS attack against a user of the interface.\r\n\r\nThis vulnerability is due …","severity":"medium","cvss":4.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N","cwe":["CWE-79"],"vendor":"cisco","product":"enterprise_nfv_infrastructure_software","affected":["enterprise_nfv_infrastructure_software = 3.3.1","enterprise_nfv_infrastructure_software = 3.4.1","enterprise_nfv_infrastructure_software = 3.5.1","enterprise_nfv_infrastructure_software = 3.5.2","enterprise_nfv_infrastructure_software = 3.6.1","enterprise_nfv_infrastructure_software = 3.6.2","enterprise_nfv_infrastructure_software = 3.6.3","enterprise_nfv_infrastructure_software = 3.7.1","enterprise_nfv_infrastructure_software = 3.8.1","enterprise_nfv_infrastructure_software = 3.9.1","enterprise_nfv_infrastructure_software = 3.9.2","enterprise_nfv_infrastructure_software = 3.10.1","enterprise_nfv_infrastructure_software = 3.10.2","enterprise_nfv_infrastructure_software = 3.10.3","enterprise_nfv_infrastructure_software = 3.11.1","enterprise_nfv_infrastructure_software = 3.11.2","enterprise_nfv_infrastructure_software = 3.11.3","enterprise_nfv_infrastructure_software = 3.12.1","enterprise_nfv_infrastructure_software = 3.12.1a","enterprise_nfv_infrastructure_software = 3.12.1b","enterprise_nfv_infrastructure_software = 3.12.2","enterprise_nfv_infrastructure_software = 3.12.3","enterprise_nfv_infrastructure_software = 4.1.1","enterprise_nfv_infrastructure_software = 4.1.2","enterprise_nfv_infrastructure_software = 4.2.1","enterprise_nfv_infrastructure_software = 4.2.2","enterprise_nfv_infrastructure_software = 4.4.1","enterprise_nfv_infrastructure_software = 4.4.2","enterprise_nfv_infrastructure_software = 4.4.3","enterprise_nfv_infrastructure_software = 4.5.1","enterprise_nfv_infrastructure_software = 4.6.1","enterprise_nfv_infrastructure_software = 4.6.2","enterprise_nfv_infrastructure_software = 4.6.2-fc2","enterprise_nfv_infrastructure_software = 4.6.2-fc3","enterprise_nfv_infrastructure_software = 4.6.3","enterprise_nfv_infrastructure_software = 4.6.3-fc4","enterprise_nfv_infrastructure_software = 4.6.4","enterprise_nfv_infrastructure_software = 4.6.5-es1","enterprise_nfv_infrastructure_software = 4.7.1","enterprise_nfv_infrastructure_software = 4.8.1","enterprise_nfv_infrastructure_software = 4.8.2","enterprise_nfv_infrastructure_software = 4.9.1","enterprise_nfv_infrastructure_software = 4.9.2","enterprise_nfv_infrastructure_software = 4.9.2-fc5","enterprise_nfv_infrastructure_software = 4.9.3","enterprise_nfv_infrastructure_software = 4.9.4","enterprise_nfv_infrastructure_software = 4.9.4-es8","enterprise_nfv_infrastructure_software = 4.9.4-es9","enterprise_nfv_infrastructure_software = 4.9.4-fc3","enterprise_nfv_infrastructure_software = 4.9.5","enterprise_nfv_infrastructure_software = 4.9.6","enterprise_nfv_infrastructure_software = 4.10.1","enterprise_nfv_infrastructure_software = 4.11.1","enterprise_nfv_infrastructure_software = 4.12.1","enterprise_nfv_infrastructure_software = 4.12.2","enterprise_nfv_infrastructure_software = 4.12.3","enterprise_nfv_infrastructure_software = 4.12.4","enterprise_nfv_infrastructure_software = 4.12.5","enterprise_nfv_infrastructure_software = 4.12.6","enterprise_nfv_infrastructure_software = 4.13.1","enterprise_nfv_infrastructure_software = 4.14.1","enterprise_nfv_infrastructure_software = 4.15.1","enterprise_nfv_infrastructure_software = 4.15.2","enterprise_nfv_infrastructure_software = 4.15.3","enterprise_nfv_infrastructure_software = 4.15.4","enterprise_nfv_infrastructure_software = 4.16.1","enterprise_nfv_infrastructure_software = 4.18.1","enterprise_nfv_infrastructure_software = 4.18.2","enterprise_nfv_infrastructure_software = 4.18.2a","unified_computing_system = 3.1(1d)","unified_computing_system = 3.1(2b)","unified_computing_system = 3.1(2c)","unified_computing_system = 3.1(2d)","unified_computing_system = 3.1(2e)","unified_computing_system = 3.1(2g)","unified_computing_system = 3.1(2i)","unified_computing_system = 3.1(3a)","unified_computing_system = 3.1(3b)","unified_computing_system = 3.1(3c)","unified_computing_system = 3.1(3d)","unified_computing_system = 3.1(3g)","unified_computing_system = 3.1(3h)","unified_computing_system = 3.1(3i)","unified_computing_system = 3.1(3j)","unified_computing_system = 3.1(3k)","unified_computing_system = 4.0(1.240)","unified_computing_system = 4.0(1a)","unified_computing_system = 4.0(1b)","unified_computing_system = 4.0(1c)","unified_computing_system = 4.0(1d)","unified_computing_system = 4.0(1e)","unified_computing_system = 4.0(1g)","unified_computing_system = 4.0(1h)","unified_computing_system = 4.0(2c)","unified_computing_system = 4.0(2d)","unified_computing_system = 4.0(2f)","unified_computing_system = 4.0(2g)","unified_computing_system = 4.0(2h)","unified_computing_system = 4.0(2i)","unified_computing_system = 4.0(2k)"],"published":"2026-04-01","updated":"2026-08-28","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-20089","references":[{"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-xss-A2tkgVAB","label":"psirt@cisco.com"},{"url":"https://software.cisco.com"}],"tags":["nvd","csaf","vendor-advisory","cisco"],"epss":0.00237,"epssPercentile":0.15029,"ingestedAt":"2026-08-29T00:27:52.118Z","slug":"CVE-2026-20089","body":"## Overview\n\nA vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with administrative privileges to conduct a stored XSS attack against a user of the interface.\r\n\r\nThis vulnerability is due to insufficient validation of user input. An attacker could exploit this vulnerability by persuading a user of an affected interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the browser of the targeted user or access sensitive, browser-based information.\n\n## Affected\n\n- `enterprise_nfv_infrastructure_software = 3.3.1`\n- `enterprise_nfv_infrastructure_software = 3.4.1`\n- `enterprise_nfv_infrastructure_software = 3.5.1`\n- `enterprise_nfv_infrastructure_software = 3.5.2`\n- `enterprise_nfv_infrastructure_software = 3.6.1`\n- `enterprise_nfv_infrastructure_software = 3.6.2`\n- `enterprise_nfv_infrastructure_software = 3.6.3`\n- `enterprise_nfv_infrastructure_software = 3.7.1`\n- `enterprise_nfv_infrastructure_software = 3.8.1`\n- `enterprise_nfv_infrastructure_software = 3.9.1`\n- `enterprise_nfv_infrastructure_software = 3.9.2`\n- `enterprise_nfv_infrastructure_software = 3.10.1`\n- `enterprise_nfv_infrastructure_software = 3.10.2`\n- `enterprise_nfv_infrastructure_software = 3.10.3`\n- `enterprise_nfv_infrastructure_software = 3.11.1`\n- `enterprise_nfv_infrastructure_software = 3.11.2`\n- `enterprise_nfv_infrastructure_software = 3.11.3`\n- `enterprise_nfv_infrastructure_software = 3.12.1`\n- `enterprise_nfv_infrastructure_software = 3.12.1a`\n- `enterprise_nfv_infrastructure_software = 3.12.1b`\n- `enterprise_nfv_infrastructure_software = 3.12.2`\n- `enterprise_nfv_infrastructure_software = 3.12.3`\n- `enterprise_nfv_infrastructure_software = 4.1.1`\n- `enterprise_nfv_infrastructure_software = 4.1.2`\n- `enterprise_nfv_infrastructure_software = 4.2.1`\n- `enterprise_nfv_infrastructure_software = 4.2.2`\n- `enterprise_nfv_infrastructure_software = 4.4.1`\n- `enterprise_nfv_infrastructure_software = 4.4.2`\n- `enterprise_nfv_infrastructure_software = 4.4.3`\n- `enterprise_nfv_infrastructure_software = 4.5.1`\n- `enterprise_nfv_infrastructure_software = 4.6.1`\n- `enterprise_nfv_infrastructure_software = 4.6.2`\n- `enterprise_nfv_infrastructure_software = 4.6.2-fc2`\n- `enterprise_nfv_infrastructure_software = 4.6.2-fc3`\n- `enterprise_nfv_infrastructure_software = 4.6.3`\n- `enterprise_nfv_infrastructure_software = 4.6.3-fc4`\n- `enterprise_nfv_infrastructure_software = 4.6.4`\n- `enterprise_nfv_infrastructure_software = 4.6.5-es1`\n- `enterprise_nfv_infrastructure_software = 4.7.1`\n- `enterprise_nfv_infrastructure_software = 4.8.1`\n- `enterprise_nfv_infrastructure_software = 4.8.2`\n- `enterprise_nfv_infrastructure_software = 4.9.1`\n- `enterprise_nfv_infrastructure_software = 4.9.2`\n- `enterprise_nfv_infrastructure_software = 4.9.2-fc5`\n- `enterprise_nfv_infrastructure_software = 4.9.3`\n- `enterprise_nfv_infrastructure_software = 4.9.4`\n- `enterprise_nfv_infrastructure_software = 4.9.4-es8`\n- `enterprise_nfv_infrastructure_software = 4.9.4-es9`\n- `enterprise_nfv_infrastructure_software = 4.9.4-fc3`\n- `enterprise_nfv_infrastructure_software = 4.9.5`\n- `enterprise_nfv_infrastructure_software = 4.9.6`\n- `enterprise_nfv_infrastructure_software = 4.10.1`\n- `enterprise_nfv_infrastructure_software = 4.11.1`\n- `enterprise_nfv_infrastructure_software = 4.12.1`\n- `enterprise_nfv_infrastructure_software = 4.12.2`\n- `enterprise_nfv_infrastructure_software = 4.12.3`\n- `enterprise_nfv_infrastructure_software = 4.12.4`\n- `enterprise_nfv_infrastructure_software = 4.12.5`\n- `enterprise_nfv_infrastructure_software = 4.12.6`\n- `enterprise_nfv_infrastructure_software = 4.13.1`\n- `enterprise_nfv_infrastructure_software = 4.14.1`\n- `enterprise_nfv_infrastructure_software = 4.15.1`\n- `enterprise_nfv_infrastructure_software = 4.15.2`\n- `enterprise_nfv_infrastructure_software = 4.15.3`\n- `enterprise_nfv_infrastructure_software = 4.15.4`\n- `enterprise_nfv_infrastructure_software = 4.16.1`\n- `enterprise_nfv_infrastructure_software = 4.18.1`\n- `enterprise_nfv_infrastructure_software = 4.18.2`\n- `enterprise_nfv_infrastructure_software = 4.18.2a`\n- `unified_computing_system = 3.1(1d)`\n- `unified_computing_system = 3.1(2b)`\n- `unified_computing_system = 3.1(2c)`\n- `unified_computing_system = 3.1(2d)`\n- `unified_computing_system = 3.1(2e)`\n- `unified_computing_system = 3.1(2g)`\n- `unified_computing_system = 3.1(2i)`\n- `unified_computing_system = 3.1(3a)`\n- `unified_computing_system = 3.1(3b)`\n- `unified_computing_system = 3.1(3c)`\n- `unified_computing_system = 3.1(3d)`\n- `unified_computing_system = 3.1(3g)`\n- `unified_computing_system = 3.1(3h)`\n- `unified_computing_system = 3.1(3i)`\n- `unified_computing_system = 3.1(3j)`\n- `unified_computing_system = 3.1(3k)`\n- `unified_computing_system = 4.0(1.240)`\n- `unified_computing_system = 4.0(1a)`\n- `unified_computing_system = 4.0(1b)`\n- `unified_computing_system = 4.0(1c)`\n- `unified_computing_system = 4.0(1d)`\n- `unified_computing_system = 4.0(1e)`\n- `unified_computing_system = 4.0(1g)`\n- `unified_computing_system = 4.0(1h)`\n- `unified_computing_system = 4.0(2c)`\n- `unified_computing_system = 4.0(2d)`\n- `unified_computing_system = 4.0(2f)`\n- `unified_computing_system = 4.0(2g)`\n- `unified_computing_system = 4.0(2h)`\n- `unified_computing_system = 4.0(2i)`\n- `unified_computing_system = 4.0(2k)`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.\n\n## Vendor advisories\n\n- **cisco-sa-cimc-xss-A2tkgVAB** · Cisco · affected: Cisco Unified Computing System (Standalone) (150 versions), Cisco Unified Computing System E-Series Software (UCSE) (29 versions), Cisco Enterprise NFV Infrastructure Software (58 versions) · updated 2026-04-22 · [advisory](https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-xss-A2tkgVAB)","depth":"sunlit","depthScore":26,"depthScoreParts":{"impact":26.4,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}