Improper privilege management in Cisco IOS XE - CVE-2026-20308
Published: August 6, 2026
Vulnerability details
The vulnerability allows a remote user to cause a denial of service.
The vulnerability exists due to insufficient input validation in the web-based management interface when handling crafted input. A remote user can send crafted input to cause a denial of service.
Only devices with the web-based management interface enabled are vulnerable.