CyberSecurityBoardThreat Intel · CVEs · Products
Critical CVEs

CVE-2026-20267: Cisco IOS XE Improper Access Control

August 6, 2026

CVE-2026-20267 is a high-severity vulnerability in Cisco IOS XE Software with a CVSS score of 9.0. It is caused by improper access control, potentially allowing unauthorized access. Cisco has released fixes in versions 17.9.10, 17.12.8, 17.15.6, 17.18.4/17.18.4a, and 26.1.2.