SB2026040172 - Multiple vulnerabilities in Cisco Unified Computing System (UCS)



SB2026040172 - Multiple vulnerabilities in Cisco Unified Computing System (UCS)

Published: April 1, 2026

Security Bulletin ID SB2026040172
Severity
Medium
Patch available
YES
Number of vulnerabilities 4
Exploitation vector Remote access
Highest impact Code execution

Breakdown by Severity

Medium 25% Low 75%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 4 secuirty vulnerabilities.


1) OS command injection (CVE-ID: CVE-2026-20095)

The vulnerability allows a remote user to execute arbitrary shell commands on the target system.

The vulnerability exists due to improper input validation in the web-based management interface of Cisco IMC. A remote privileged user can pass specially crafted data to the application and execute arbitrary OS commands as root on the target system.


2) OS Command Injection (CVE-ID: CVE-2026-20096)

The vulnerability allows a remote user to execute arbitrary shell commands on the target system.

The vulnerability exists due to improper input validation in the web-based management interface of Cisco IMC. A remote privileged user can pass specially crafted data to the application and execute arbitrary OS commands as root on the target system.


3) OS command injection (CVE-ID: CVE-2026-20094)

The vulnerability allows a remote user to execute arbitrary shell commands on the target system.

The vulnerability exists due to improper input validation in the web-based management interface of Cisco IMC. A remote user with read-only privileges can pass specially crafted data to the application and execute arbitrary OS commands as root on the target system.


4) Out-of-bounds write (CVE-ID: CVE-2026-20097)

The vulnerability allows a remote user to escalate privileges on the system.

The vulnerability exists due to a boundary error the web-based management interface of Cisco IMC. A remote attacker can send a specially crafted HTTP request to the web interface, trigger an out-of-bounds write and execute arbitrary code as root. 


Remediation

Install update from vendor's website.