THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-20288 (MEDIUM 6.5) — A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with Admin privileges to execute arbitrary commands on the underlying operating system of an affected system and elevate privileges to root.  This vulnera

[NVD] CVE-2026-20288 (MEDIUM 6.5) — A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with Admin privileges to execute arbitrary commands on the underlying operating system of an affected system and elevate privileges to root.  This vulnera

lownvdPublished 2026-08-05

CVE-2026-20288 CVSS: 6.5 MEDIUM Published: 2026-08-05T17:16:49.527

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with Admin privileges to execute arbitrary commands on the underlying operating system of an affected system and elevate privileges to root. 

This vulnerability is due to improper validation of user-supplie

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-20288