CVE-2026-20189

1 karet z 1 položek · v celém archivu · celý přehled CZ · EN/orig

CVE-2026-20189

EPSS 0.00 EPSS k 18. 9. 2026

Hodnocení závažnosti

4.3 CVSS 3.1 cisco

útok odkudkoli z internetu bez přípravy stačí běžný účet bez zásahu uživatele
dopad únik části dat beze změny dat bez výpadku
přesah dopad jen na zranitelnou součást

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

zvyšuje závažnost mírně zvyšuje závažnost snižuje závažnost

1

Cisco Prime Infrastructure Information Disclosure Vulnerability

A vulnerability in the log file download functionality of Cisco Prime Infrastructure could allow an authenticated, remote attacker to download arbitrary log files from the server. This vulnerability is due to insufficient authorization checks on the download service API. An attacker could exploit this vulnerability by submitting a crafted URL request to an affected device. A successful exploit could allow the attacker to download sensitive log files that they would otherwise not have…

EPSS 0.00 CVE-2026-20189 Cisco US

· Cisco PSIRT · Cisco Prime Infrastructure Information Disclosure Vulnerability