Protection Mechanism Failure in Cisco IOS XR Software
CVE-2026-20277

8.2HIGH

Key Information:

Vendor

Cisco

Vendor
CVE Published:
2 September 2026

Badges

👾 Exploit Exists

What is CVE-2026-20277?

The vulnerabilities identified are related to failures in protection mechanisms within Cisco IOS XR Software. These issues, associated with the Common Weakness Enumeration (CWE) CWE-693, have been addressed through a series of hardening updates. These updates reflect Cisco's dedication to enhancing security and ensuring robust product performance through proactive measures in their software development lifecycle.

Affected Version(s)

Cisco IOS XR Software 6.5.29

Cisco IOS XR Software 7.0.1

Cisco IOS XR Software 6.5.26

References

CVSS V3.1

Score:
8.2
Severity:
HIGH
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • 👾

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

.