AI description
CVE-2026-20317 is a vulnerability affecting Cisco Secure Workload Software, encompassing both Software as a Service (SaaS) and on-premises deployments. This flaw is categorized as an authentication bypass and privilege escalation vulnerability. It was identified during an internal security review by the Cisco Secure Workload engineering team. Cisco has released software updates to address CVE-2026-20317, along with other related vulnerabilities. There are no known workarounds for this issue, and it is not currently known to be actively exploited in the wild.
- Description
- As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20317 are related to improper authentication issues that are grouped under the Common Weakness Enumeration (CWE) CWE-287.
- Source
- psirt@cisco.com
- NVD status
- Awaiting Analysis
CVSS 3.1
- Type
- Secondary
- Base score
- 10
- Impact score
- 5.8
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:H
- Severity
- CRITICAL
- psirt@cisco.com
- CWE-287
- Hype score
- Not currently trending
Cisco Secure Workloadに複数の重大(Critical)な脆弱性。CVE-2026-20315とCVE-2026-20317はCVSSスコア10で、前者が不適切なアクセス制御、後者が認証不備。CVE-2026-20231は同9.9のOSコマンドインジェクション。CVE-2026-20318は同9.6の
@__kokumoto
20 Aug 2026
1412 Impressions
2 Retweets
0 Likes
1 Bookmark
0 Replies
1 Quote
🚨 CRITICAL: Cisco has patched two CVSS 10.0 vulnerabilities in Cisco Secure Workload. CVE-2026-20315 — improper access control CVE-2026-20317 — improper authentication / authentication bypass Both flaws carry the highest possible CVSS severity and could allow attackers t
@ThreatWire_
20 Aug 2026
58 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
Cisco patches Secure Workload flaws CVE-2026-20315 and CVE-2026-20317, an authentication bypass and privilege escalation pair scoring CVSS 10. Upgrade now. #Cisco #CVE #AuthenticationBypass #PrivilegeEscalation #Vulnerability #InfoSec #PatchNow https://t.co/BOkldB0lBd
@Daily_CyberSec
20 Aug 2026
388 Impressions
3 Retweets
5 Likes
1 Bookmark
0 Replies
0 Quotes