news.mlab.sh
Back to the feed
vulnerability

Multiples vulnérabilités dans Cisco IOS XE (25 août 2026)

High
Summary

Cisco has announced multiple vulnerabilities in its IOS XE software, allowing attackers to bypass security policies and potentially cause unspecified security issues. These vulnerabilities affect several versions of the operating system used in Cisco networking equipment. Users are advised to consult Cisco's security advisory for available patches and mitigations.

Cisco has identified and announced several security vulnerabilities within its IOS XE software. These vulnerabilities could enable an attacker to circumvent existing security policies, leading to potential security problems. The affected versions of IOS XE include 17.12.x (prior to 17.12.8), 17.15.x (prior to 17.15.6), 17.18 (prior to 17.18.4 or 17.18.4a), 17.9.x (prior to 17.9.10), and 26.1.x (prior to 26.1.2). The vulnerabilities are detailed in Cisco's security advisory. Users should immediately refer to the advisory for specific instructions on how to address these issues. The advisory provides links to the relevant security bulletins and CVE records. The CVE identifiers are: CVE-2026-20267, CVE-2026-20268, CVE-2026-20269, CVE-2026-20270, CVE-2026-20271, and CVE-2026-20272.

Read the full article at CERT-FR