SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-20030

CRITICAL · CVSS 10 EPSS 0.55%

Source: NVD + CISA KEV + EPSS · Published 2026-08-19 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Cisco products are vulnerable due to improper neutralization of special elements in SQL commands, which could allow an attacker to execute arbitrary SQL queries. The impact of this vulnerability is critical, as it could lead to unauthorized data access or manipulation, potentially compromising the integrity and confidentiality of the affected systems. Organizations using Cisco products should prioritize this issue to mitigate the risk of exploitation and protect sensitive data.

CVE
CVE-2026-20030
Severity
CRITICAL
CVSS
10
EPSS
0.55%
Cisco

Original NVD Description

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Crosswork engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20030 are related to improper neutralization of special elements used in a SQL command issues that are grouped under the Common Weakness Enumeration (CWE) CWE-89.