Skip to content
CVSS 10.0CVSS 10.0 · CRITICAL

CVE-2026-20317Falla de autenticación en Cisco Secure Workload

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20317 are related to improper authentication issues that are grouped under the Common Weakness Enumeration (CWE) CWE-287.

Ver en NVD

Análisis

Cisco Secure Workload presenta una vulnerabilidad crítica de autenticación que permite a un atacante evadir controles de seguridad para obtener acceso no autorizado al sistema. Esta falla afecta directamente la segmentación de red y la protección de cargas de trabajo en la infraestructura. Es necesario aplicar las actualizaciones de software proporcionadas por Cisco para mitigar el riesgo.

Roles relevantes

CyberSecurityCloudKubernetesBackendLinuxDocker

Severidad

Puntaje: 10.0(CRITICAL)
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:H
AV: NETWORK
AC: LOW
PR: NONE
UI: NONE
S: CHANGED
C: NONE
I: HIGH
A: HIGH
Tipo de falla (CWE): CWE-287

EPSS

Sin puntaje EPSS aún (CVE muy reciente).

Descripción técnica

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20317 are related to improper authentication issues that are grouped under the Common Weakness Enumeration (CWE) CWE-287.

Publicada: 19/8/2026, 17:18:39
Última modificación: 19/8/2026, 19:17:13

Referencias

InicioEventosBlogRecursosCursosEquipo