Story perspectives
Cisco Releases Critical Patches for High-Risk Vulnerabilities
4/3/2026
1 of 1
Story summary
- Cisco Systems, Inc., the networking vendor, announced fixes for critical vulnerabilities, CVE-2026-20093 and CVE-2026-20160, with CVSS scores of 9.8.
- CVE-2026-20093 allows unauthenticated attackers to bypass authentication and alter passwords, including administrator accounts.
- CVE-2026-20160 enables attackers to run arbitrary commands on the operating system via an exposed internal service.
- Patches have been released for Smart Software Manager On-Prem and Integrated Management Controller systems so that customers can update to fixed versions.
