CVE-2026-20096 | Cisco Enterprise NFV Infrastructure Software Web-based Management Interface command injection (cisco-sa-cimc-cmd-inj-3hKN3bVt)
A vulnerability classified as critical has been found in Cisco Enterprise NFV Infrastructure Software, Unified Computing System and Unified Computing System E-Series Software. Affected by this vulnerability is an unknown functionality of the component Web-based Management Interface. Performing a manipulation results in command injection.
This vulnerability is reported as CVE-2026-20096. The attack is possible to be carried out remotely. No exploit exists.
It is recommended to upgrade the affected component.