LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →
Home / Vulnerability Intelligence / CVE-2026-20040

CVE-2026-20040 - Vulnerability Analysis

HighCVSS: 8.8

Last Updated: March 11, 2026

Cisco IOS XR Software - Command Injection

Published: March 11, 2026Updated: March 11, 2026

Overview

Cisco IOS XR Software contains a command injection caused by insufficient validation of user arguments in CLI commands, letting authenticated local attackers escalate privileges to root and execute arbitrary commands.

Severity & Score

Severity: High
CVSS Score: 8.8
EPSS Score: 3.5%(Probability of exploitation in next 30 days)

Impact

Authenticated local attackers can execute arbitrary commands as root, leading to full system compromise.

Mitigation

Update to the latest available version of Cisco IOS XR Software.

Social Media Activity(3 posts)

Jeff Hall - PCIGuru :verified:
Jeff Hall - PCIGuru :verified:
@jbhall56
Mar 12, 2026

The most severe of these issues are CVE-2026-20040 and CVE-2026-20046 (CVSS score of 8.8), two bugs that could be exploited to execute arbitrary commands as root or gain administrative control of a device. https://www.securityweek.com/cisco-patches-high-severity-ios-xr-vulnerabilities-2/

View original post
TheHackerWire
TheHackerWire
@thehackerwire
Mar 11, 2026

🟠 CVE-2026-20040 - High (8.8) A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to execute arbitrary commands as root on the underlying operating system of an affected device. This vulnerability is due to insufficient validatio... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-20040/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post
AA
AA
@AAKL
Mar 11, 2026

Four new high-risk vulnerabilities from Cisco: - CVE-2026-20118: Cisco IOS XR Egress Packet Network Interface Aligner Interrupt Denial of Service Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-xrncs-epni-int-dos-TWMffUsN - CVE-2026-20074: Cisco IOS XR Software Multi-Instance Intermediate System-to-Intermediate System Denial of Service Vulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-isis-dos-kDMxpSzK - CVE-2026-20040 and CVE-2026-20046L Cisco IOS XR Software CLI Privilege Escalation Vulnerabilities https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxr-privesc-bF8D5U4W - CVE-2026-20116 and CVE-2026-20117: Multiple Cisco Contact Center Products Cross-Site Scripting Vulnerabilities https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cc-xss-MrNAH5Jh @TalosSecurity #infosec #Cisco #vulnerability @cR0w

View original post

Details

CVE ID
CVE-2026-20040
Severity
High
CVSS Score
8.8
Type
command_injection
Status
new
EPSS
3.5%
Social Posts
3

CWE

  • CWE-78

CVSS Metrics

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

EPSS Score

3.5%Probability of exploitation in the next 30 days