Cisco IMC Pre-Auth XSS Vulnerability (CVE-2026-20198) Advisory
Security Advisory
CVE-2026-20198
Medium
Cisco
Affected:
- 5000 Series Enterprise Network Compute Systems (ENCS)
- Catalyst 8300 Series Edge uCPE
- UCS C-Series M5 Rack Servers in standalone mode
- UCS E-Series Servers M3
- UCS E-Series Servers M6
Fixed in:
- Cisco IMC 6.0(2.260143) or later (for 5000 Series ENCS and Catalyst 8300 Series Edge uCPE)
- Cisco UCS Server Software Release 4.2(3b) or later (for UCS C-Series M5 and M6 Rack Servers)
- Cisco UCS E Software Release 3.2.18.1 or later (for UCS E-Series M3)
- Cisco UCS E Software Release 4.15.4 or later (for UCS E-Series M6)
- Cisco UCS Server Software Release 4.3(260054) or later (for UCS S-Series Storage Servers)
Referenced CVEs:
CVE-2026-20198 · 4.8
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from sec.cloudapps.cisco.com, cleaned by our LLM pipeline, and translated to English. View original.