Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2834 articles · 164367 vulns · 36/41 feeds (7d)
← Back to list
6.3
CVE-2026-20206
Cisco · Cisco ThousandEyes Enterprise Agent

Cisco ThousandEyes BrowserBot Command Injection Vulnerability

Description

A vulnerability in the BrowserBot component of Cisco ThousandEyes Enterprise Agent could have allowed an authenticated, remote attacker to execute arbitrary commands on Agents on behalf of the BrowserBot synthetics orchestration process. Cisco has addressed this vulnerability in the Cisco ThousandEyes Enterprise Agent, and no customer action is needed. This vulnerability was due to insufficient input validation of command arguments that are supplied by the user. Prior to this vulnerability being addressed, an attacker could have exploited this vulnerability by authenticating to the ThousandEyes SaaS and submitting crafted input into the affected parameter. A successful exploit could have allowed the attacker to execute arbitrary commands within the BrowserBot container as the node user. To exploit this vulnerability, the attacker must have valid user credentials for the ThousandEyes SaaS and the ability to manage transaction tests.

Affected Products

VendorProductVersions
CiscoCisco ThousandEyes Enterprise AgentAgent 5.0, Agent 4.4.4, Agent 4.4.3, Agent 4.4.2, Agent 4.2, Agent 4.1, Agent 4.0, Agent 5.1, Agent 5.1.2, Agent 5.1.3

References

  • https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-tebbot-cmdinj-wN3yQ5gn

Related News (2 articles)

Tier C
VulDB28d ago
CVE-2026-20206 | Cisco ThousandEyes Enterprise Agent up to 5.1.3 BrowserBot os command injection (cisco-sa-tebbot-cmdinj-wN3yQ5gn)
→ No new info (linked only)
Tier A
Cisco Security28d ago
Cisco ThousandEyes Enterprise Agent BrowserBot Command Injection Vulnerability
→ No new info (linked only)
CVSS 3.16.3 MEDIUM
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
CISA KEV❌ No
Actively exploited❌ No
CWECWE-78
PublishedMay 20, 2026
Last enriched28d ago
Trending Score2
Source articles2
Independent2
Info Completeness8/14
Missing: epss, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-20190EXP
Cisco Identity Services Engine Information Disclosure Vulnerability
Trending: 66
CRITICALCVE-2026-20181EXP
Cisco Identity Services Engine Remote Code Execution Vulnerability
Trending: 65
MEDIUMCVE-2026-20220
Cisco Crosswork Network Controller Remote Code Execution Vulnerability
Trending: 34
CRITICALPRE-CVE
Cisco Identity Services Engine Remote Code Execution and Information Disclosure Vulnerabilities
Trending: 30
MEDIUMCVE-2026-20171
Cisco Nexus 3000 and 9000 Series Border Gateway Protocol Denial of Service Vulnerability
Trending: 2

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
May 20, 2026
Discovered by ZDM
May 20, 2026