{"id":"CVE-2026-20095","title":"A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with admin-level privileges to perform command injection attacks on an affected system and&nbsp;execute arbitrary commands a…","summary":"A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with admin-level privileges to perform command injection attacks on an affected system and&nbsp;execute arbitrary commands a…","severity":"medium","cvss":6.5,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N","cwe":["CWE-77"],"vendor":"cisco","product":"enterprise_nfv_infrastructure_software","affected":["enterprise_nfv_infrastructure_software = 3.3.1","enterprise_nfv_infrastructure_software = 3.4.1","enterprise_nfv_infrastructure_software = 3.5.1","enterprise_nfv_infrastructure_software = 3.5.2","enterprise_nfv_infrastructure_software = 3.6.1","enterprise_nfv_infrastructure_software = 3.6.2","enterprise_nfv_infrastructure_software = 3.6.3","enterprise_nfv_infrastructure_software = 3.7.1","enterprise_nfv_infrastructure_software = 3.8.1","enterprise_nfv_infrastructure_software = 3.9.1","enterprise_nfv_infrastructure_software = 3.9.2","enterprise_nfv_infrastructure_software = 3.10.1","enterprise_nfv_infrastructure_software = 3.10.2","enterprise_nfv_infrastructure_software = 3.10.3","enterprise_nfv_infrastructure_software = 3.11.1","enterprise_nfv_infrastructure_software = 3.11.2","enterprise_nfv_infrastructure_software = 3.11.3","enterprise_nfv_infrastructure_software = 3.12.1","enterprise_nfv_infrastructure_software = 3.12.1a","enterprise_nfv_infrastructure_software = 3.12.1b","enterprise_nfv_infrastructure_software = 3.12.2","enterprise_nfv_infrastructure_software = 3.12.3","enterprise_nfv_infrastructure_software = 4.1.1","enterprise_nfv_infrastructure_software = 4.1.2","enterprise_nfv_infrastructure_software = 4.2.1","enterprise_nfv_infrastructure_software = 4.2.2","enterprise_nfv_infrastructure_software = 4.4.1","enterprise_nfv_infrastructure_software = 4.4.2","enterprise_nfv_infrastructure_software = 4.4.3","enterprise_nfv_infrastructure_software = 4.5.1","enterprise_nfv_infrastructure_software = 4.6.1","enterprise_nfv_infrastructure_software = 4.6.2","enterprise_nfv_infrastructure_software = 4.6.2-fc2","enterprise_nfv_infrastructure_software = 4.6.2-fc3","enterprise_nfv_infrastructure_software = 4.6.3","enterprise_nfv_infrastructure_software = 4.6.3-fc4","enterprise_nfv_infrastructure_software = 4.6.4","enterprise_nfv_infrastructure_software = 4.6.5-es1","enterprise_nfv_infrastructure_software = 4.7.1","enterprise_nfv_infrastructure_software = 4.8.1","enterprise_nfv_infrastructure_software = 4.8.2","enterprise_nfv_infrastructure_software = 4.9.1","enterprise_nfv_infrastructure_software = 4.9.2","enterprise_nfv_infrastructure_software = 4.9.2-fc5","enterprise_nfv_infrastructure_software = 4.9.3","enterprise_nfv_infrastructure_software = 4.9.4","enterprise_nfv_infrastructure_software = 4.9.4-es8","enterprise_nfv_infrastructure_software = 4.9.4-es9","enterprise_nfv_infrastructure_software = 4.9.4-fc3","enterprise_nfv_infrastructure_software = 4.9.5","enterprise_nfv_infrastructure_software = 4.9.6","enterprise_nfv_infrastructure_software = 4.10.1","enterprise_nfv_infrastructure_software = 4.11.1","enterprise_nfv_infrastructure_software = 4.12.1","enterprise_nfv_infrastructure_software = 4.12.2","enterprise_nfv_infrastructure_software = 4.12.3","enterprise_nfv_infrastructure_software = 4.12.4","enterprise_nfv_infrastructure_software = 4.12.5","enterprise_nfv_infrastructure_software = 4.12.6","enterprise_nfv_infrastructure_software = 4.13.1","enterprise_nfv_infrastructure_software = 4.14.1","enterprise_nfv_infrastructure_software = 4.15.1","enterprise_nfv_infrastructure_software = 4.15.2","enterprise_nfv_infrastructure_software = 4.15.3","enterprise_nfv_infrastructure_software = 4.15.4","enterprise_nfv_infrastructure_software = 4.16.1","enterprise_nfv_infrastructure_software = 4.18.1","enterprise_nfv_infrastructure_software = 4.18.2","enterprise_nfv_infrastructure_software = 4.18.2a","unified_computing_system = 3.1(1d)","unified_computing_system = 3.1(2b)","unified_computing_system = 3.1(2c)","unified_computing_system = 3.1(2d)","unified_computing_system = 3.1(2e)","unified_computing_system = 3.1(2g)","unified_computing_system = 3.1(2i)","unified_computing_system = 3.1(3a)","unified_computing_system = 3.1(3b)","unified_computing_system = 3.1(3c)","unified_computing_system = 3.1(3d)","unified_computing_system = 3.1(3g)","unified_computing_system = 3.1(3h)","unified_computing_system = 3.1(3i)","unified_computing_system = 3.1(3j)","unified_computing_system = 3.1(3k)","unified_computing_system = 4.0(1.240)","unified_computing_system = 4.0(1a)","unified_computing_system = 4.0(1b)","unified_computing_system = 4.0(1c)","unified_computing_system = 4.0(1d)","unified_computing_system = 4.0(1e)","unified_computing_system = 4.0(1g)","unified_computing_system = 4.0(1h)","unified_computing_system = 4.0(2c)","unified_computing_system = 4.0(2d)","unified_computing_system = 4.0(2f)","unified_computing_system = 4.0(2g)","unified_computing_system = 4.0(2h)","unified_computing_system = 4.0(2i)","unified_computing_system = 4.0(2k)"],"published":"2026-04-01","updated":"2026-08-28","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-20095","references":[{"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-cmd-inj-3hKN3bVt","label":"psirt@cisco.com"}],"tags":["nvd"],"epss":0.00929,"epssPercentile":0.58505,"ingestedAt":"2026-08-29T00:27:52.240Z","slug":"CVE-2026-20095","body":"## Overview\n\nA vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with admin-level privileges to perform command injection attacks on an affected system and&nbsp;execute arbitrary commands as the root user.\r\n\r\nThis vulnerability is due to improper validation of user-supplied input. An attacker could exploit this vulnerability by sending crafted commands to the web-based management interface of the affected software. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system as the root user. Cisco has assigned this vulnerability a Security Impact Rating (SIR) of High, rather than Medium as the score indicates, because additional security implications could occur once the attacker has become root.\n\n## Affected\n\n- `enterprise_nfv_infrastructure_software = 3.3.1`\n- `enterprise_nfv_infrastructure_software = 3.4.1`\n- `enterprise_nfv_infrastructure_software = 3.5.1`\n- `enterprise_nfv_infrastructure_software = 3.5.2`\n- `enterprise_nfv_infrastructure_software = 3.6.1`\n- `enterprise_nfv_infrastructure_software = 3.6.2`\n- `enterprise_nfv_infrastructure_software = 3.6.3`\n- `enterprise_nfv_infrastructure_software = 3.7.1`\n- `enterprise_nfv_infrastructure_software = 3.8.1`\n- `enterprise_nfv_infrastructure_software = 3.9.1`\n- `enterprise_nfv_infrastructure_software = 3.9.2`\n- `enterprise_nfv_infrastructure_software = 3.10.1`\n- `enterprise_nfv_infrastructure_software = 3.10.2`\n- `enterprise_nfv_infrastructure_software = 3.10.3`\n- `enterprise_nfv_infrastructure_software = 3.11.1`\n- `enterprise_nfv_infrastructure_software = 3.11.2`\n- `enterprise_nfv_infrastructure_software = 3.11.3`\n- `enterprise_nfv_infrastructure_software = 3.12.1`\n- `enterprise_nfv_infrastructure_software = 3.12.1a`\n- `enterprise_nfv_infrastructure_software = 3.12.1b`\n- `enterprise_nfv_infrastructure_software = 3.12.2`\n- `enterprise_nfv_infrastructure_software = 3.12.3`\n- `enterprise_nfv_infrastructure_software = 4.1.1`\n- `enterprise_nfv_infrastructure_software = 4.1.2`\n- `enterprise_nfv_infrastructure_software = 4.2.1`\n- `enterprise_nfv_infrastructure_software = 4.2.2`\n- `enterprise_nfv_infrastructure_software = 4.4.1`\n- `enterprise_nfv_infrastructure_software = 4.4.2`\n- `enterprise_nfv_infrastructure_software = 4.4.3`\n- `enterprise_nfv_infrastructure_software = 4.5.1`\n- `enterprise_nfv_infrastructure_software = 4.6.1`\n- `enterprise_nfv_infrastructure_software = 4.6.2`\n- `enterprise_nfv_infrastructure_software = 4.6.2-fc2`\n- `enterprise_nfv_infrastructure_software = 4.6.2-fc3`\n- `enterprise_nfv_infrastructure_software = 4.6.3`\n- `enterprise_nfv_infrastructure_software = 4.6.3-fc4`\n- `enterprise_nfv_infrastructure_software = 4.6.4`\n- `enterprise_nfv_infrastructure_software = 4.6.5-es1`\n- `enterprise_nfv_infrastructure_software = 4.7.1`\n- `enterprise_nfv_infrastructure_software = 4.8.1`\n- `enterprise_nfv_infrastructure_software = 4.8.2`\n- `enterprise_nfv_infrastructure_software = 4.9.1`\n- `enterprise_nfv_infrastructure_software = 4.9.2`\n- `enterprise_nfv_infrastructure_software = 4.9.2-fc5`\n- `enterprise_nfv_infrastructure_software = 4.9.3`\n- `enterprise_nfv_infrastructure_software = 4.9.4`\n- `enterprise_nfv_infrastructure_software = 4.9.4-es8`\n- `enterprise_nfv_infrastructure_software = 4.9.4-es9`\n- `enterprise_nfv_infrastructure_software = 4.9.4-fc3`\n- `enterprise_nfv_infrastructure_software = 4.9.5`\n- `enterprise_nfv_infrastructure_software = 4.9.6`\n- `enterprise_nfv_infrastructure_software = 4.10.1`\n- `enterprise_nfv_infrastructure_software = 4.11.1`\n- `enterprise_nfv_infrastructure_software = 4.12.1`\n- `enterprise_nfv_infrastructure_software = 4.12.2`\n- `enterprise_nfv_infrastructure_software = 4.12.3`\n- `enterprise_nfv_infrastructure_software = 4.12.4`\n- `enterprise_nfv_infrastructure_software = 4.12.5`\n- `enterprise_nfv_infrastructure_software = 4.12.6`\n- `enterprise_nfv_infrastructure_software = 4.13.1`\n- `enterprise_nfv_infrastructure_software = 4.14.1`\n- `enterprise_nfv_infrastructure_software = 4.15.1`\n- `enterprise_nfv_infrastructure_software = 4.15.2`\n- `enterprise_nfv_infrastructure_software = 4.15.3`\n- `enterprise_nfv_infrastructure_software = 4.15.4`\n- `enterprise_nfv_infrastructure_software = 4.16.1`\n- `enterprise_nfv_infrastructure_software = 4.18.1`\n- `enterprise_nfv_infrastructure_software = 4.18.2`\n- `enterprise_nfv_infrastructure_software = 4.18.2a`\n- `unified_computing_system = 3.1(1d)`\n- `unified_computing_system = 3.1(2b)`\n- `unified_computing_system = 3.1(2c)`\n- `unified_computing_system = 3.1(2d)`\n- `unified_computing_system = 3.1(2e)`\n- `unified_computing_system = 3.1(2g)`\n- `unified_computing_system = 3.1(2i)`\n- `unified_computing_system = 3.1(3a)`\n- `unified_computing_system = 3.1(3b)`\n- `unified_computing_system = 3.1(3c)`\n- `unified_computing_system = 3.1(3d)`\n- `unified_computing_system = 3.1(3g)`\n- `unified_computing_system = 3.1(3h)`\n- `unified_computing_system = 3.1(3i)`\n- `unified_computing_system = 3.1(3j)`\n- `unified_computing_system = 3.1(3k)`\n- `unified_computing_system = 4.0(1.240)`\n- `unified_computing_system = 4.0(1a)`\n- `unified_computing_system = 4.0(1b)`\n- `unified_computing_system = 4.0(1c)`\n- `unified_computing_system = 4.0(1d)`\n- `unified_computing_system = 4.0(1e)`\n- `unified_computing_system = 4.0(1g)`\n- `unified_computing_system = 4.0(1h)`\n- `unified_computing_system = 4.0(2c)`\n- `unified_computing_system = 4.0(2d)`\n- `unified_computing_system = 4.0(2f)`\n- `unified_computing_system = 4.0(2g)`\n- `unified_computing_system = 4.0(2h)`\n- `unified_computing_system = 4.0(2i)`\n- `unified_computing_system = 4.0(2k)`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":36,"depthScoreParts":{"impact":35.8,"likelihood":0.2,"exploitation":0,"ransomware":0},"changes":[]}