#VU124590 Incorrect Privilege Assignment in Cisco IOS XE - CVE-2026-20110
Published: March 25, 2026
Cisco IOS XE
Cisco Systems, Inc
Description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper access control in the CLI when handling the start maintenance command. A local user can send a specially crafted command to cause a denial of service.
Exploitation requires authentication with low-privileged user credentials and local access to the device CLI.