Skip to content
CVSS 10.0CVSS 10.0 · CRITICAL

CVE-2026-20315Control de acceso inapropiado en Cisco Secure Workload

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20315 are related to improper access control issues that are grouped under the Common Weakness Enumeration (CWE) CWE-284.

Ver en NVD

Análisis

Cisco Secure Workload contains multiple improper access control vulnerabilities that can lead to a complete security bypass. With a CVSS score of 10.0, these flaws could allow unauthorized users to circumvent policies in cloud and data center environments. Teams using this platform for micro-segmentation should apply the hardening release immediately.

Roles relevantes

CyberSecurityCloudKubernetesDockerBackendLinux

Severidad

Puntaje: 10.0(CRITICAL)
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
AV: NETWORK
AC: LOW
PR: NONE
UI: NONE
S: CHANGED
C: HIGH
I: HIGH
A: HIGH
Tipo de falla (CWE): CWE-284

EPSS

Sin puntaje EPSS aún (CVE muy reciente).

Descripción técnica

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20315 are related to improper access control issues that are grouped under the Common Weakness Enumeration (CWE) CWE-284.

Publicada: 19/8/2026, 17:18:39
Última modificación: 19/8/2026, 19:17:13

Referencias

InicioEventosBlogRecursosCursosEquipo