logo

Latest Cisco IMC vulnerabilities: How to find impacted assets

ID: f0186fee-e990-5517-ab9f-2473ff49f9df

STIX ID: report--f0186fee-e990-5517-ab9f-2473ff49f9df

Feed Name: runZero Blog

Threat Score
75/100

Date Published: 2026-04-02

Date Updated: 2026-04-29

Author: Matthew Kienow

...
...

Cisco released advisories for five IMC vulnerabilities (CVE-2026-20093 through CVE-2026-20097) that include a critical unauthenticated password-change bypass (CVSS 9.8) allowing full administrative takeover, command injection vulnerabilities enabling execution as root (CVSS 8.8 and 6.5), and remote code execution; numerous Cisco servers, appliances, and NFVIS/NIM platforms are affected and Cisco provides fixed firmware/IMC versions and upgrade instructions.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.