Denial of Service Vulnerability in Cisco IOS XE Web Management Interface
CVE-2026-20311
6.3MEDIUM
What is CVE-2026-20311?
A vulnerability exists in the web-based management interface of Cisco IOS XE Software, stemming from inadequate error handling. This flaw allows a remote attacker, with low privileges, to exploit the interface by using a malformed certificate after authenticating. The result of such exploitation could be a denial of service (DoS) situation, where the affected device may reload unexpectedly. This presents a significant risk as it impacts the availability of services reliant on the device.
Affected Version(s)
Cisco IOS XE Software 17.3.1
Cisco IOS XE Software 17.3.1a
Cisco IOS XE Software 17.3.2a