AI description
CVE-2026-20315 is a vulnerability affecting Cisco Secure Workload, identified as an improper access control issue. This flaw falls under the Common Weakness Enumeration (CWE) category CWE-284, which pertains to insufficient authorization. Cisco's engineering team conducted an internal security review that led to the discovery of this and other related vulnerabilities. As a result, Cisco released hardening updates for Secure Workload on August 19, 2026, to address these internally discovered issues.
- Description
- As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20315 are related to improper access control issues that are grouped under the Common Weakness Enumeration (CWE) CWE-284.
- Source
- psirt@cisco.com
- NVD status
- Awaiting Analysis
CVSS 3.1
- Type
- Secondary
- Base score
- 10
- Impact score
- 6
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
- Severity
- CRITICAL
- psirt@cisco.com
- CWE-284
Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.
- Hype score
4
Cisco Secure Workloadに複数の重大(Critical)な脆弱性。CVE-2026-20315とCVE-2026-20317はCVSSスコア10で、前者が不適切なアクセス制御、後者が認証不備。CVE-2026-20231は同9.9のOSコマンドインジェクション。CVE-2026-20318は同9.6の
@__kokumoto
20 Aug 2026
1412 Impressions
2 Retweets
0 Likes
1 Bookmark
0 Replies
1 Quote
🚨 CRITICAL: Cisco has patched two CVSS 10.0 vulnerabilities in Cisco Secure Workload. CVE-2026-20315 — improper access control CVE-2026-20317 — improper authentication / authentication bypass Both flaws carry the highest possible CVSS severity and could allow attackers t
@ThreatWire_
20 Aug 2026
58 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
Cisco patches Secure Workload flaws CVE-2026-20315 and CVE-2026-20317, an authentication bypass and privilege escalation pair scoring CVSS 10. Upgrade now. #Cisco #CVE #AuthenticationBypass #PrivilegeEscalation #Vulnerability #InfoSec #PatchNow https://t.co/BOkldB0lBd
@Daily_CyberSec
20 Aug 2026
388 Impressions
3 Retweets
5 Likes
1 Bookmark
0 Replies
0 Quotes