logo

CVE-2026-20093: Critical Cisco IMC Flaw Allows Unauthenticated Admin Access to UCS Servers

ID: 5c0b752d-5f50-52e2-b62d-dd24458e688a

STIX ID: report--5c0b752d-5f50-52e2-b62d-dd24458e688a

Feed Name: SOCRadar Blog

Threat Score
78/100

Date Published: 2026-04-03

Date Updated: 2026-04-30

Author: Ameer Owda

...
...

CVE-2026-20093 is a critical (CVSS 9.8) authentication-bypass vulnerability in Cisco IMC’s password-change functionality that allows unauthenticated remote attackers to reset credentials and obtain full administrative control of affected UCS C- and E-Series servers and dozens of appliances built on them. The advisory lists affected hardware and fixed IMC/NFVIS releases, describes exploitation via a crafted HTTP POST, notes no evidence of in-the-wild exploitation or public PoC, and recommends immediate patching, management-plane isolation, jump hosts with MFA, SIEM monitoring for password-change requests, and user audits.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.