Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2834 articles · 164367 vulns · 36/41 feeds (7d)
← Back to list
6.3
CVE-2026-20220PATCHED
Cisco · Cisco Crosswork Network Change Automation

Cisco Crosswork Network Controller Remote Code Execution Vulnerability

Description

A vulnerability in the web-based management interface of Cisco Crosswork Network Controller could allow an authenticated, remote attacker to execute arbitrary commands on an affected device. This vulnerability is due to insufficient input validation in the configuration template engine of the web-based management interface. An attacker could exploit this vulnerability by sending a crafted request to the affected device. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system in limited areas of the file system. This vulnerability affects only areas of the operating system for which the template user has write permissions.  To exploit this vulnerability, the attacker must have valid template user credentials with write permissions. Template users with read permissions cannot exploit this vulnerability. 

Affected Products

VendorProductVersions
CiscoCisco Crosswork Network Change Automation3.0.0, 3.0.1, 1.0.0, 2.0.0, 2.0.1, 3.0.2, 2.0.2, 3.0.3, 4.0.0, 4.1.0, 4.5.0, 4.1.1, 5.0.0, 4.5.1, 4.1.2, 5.0.1, 4.5.2, 5.0.2, 4.1.3, 6.0.0, 7.0.0, 4.1.4, 6.0.2, 5.0.3, 6.0.3, 5.0.4, 7.0.1, 6.0.4, 7.0.2, 7.1.0, 5.0.5, 7.0.3, 7.0.4, 7.1.1, 7.0.5, 7.2.0, 7.1.2

References

  • https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cnc-inj-QNMeEmxk

Related News (2 articles)

Tier C
VulDB5h ago
CVE-2026-20220 | Cisco Crosswork Network Change Automation up to 7.2.0 Web-based Management Interface injection (cisco-sa-cnc-inj-QNMeEmxk)
→ No new info (linked only)
Tier A
Cisco Security6h ago
Cisco Crosswork Network Controller Server-Side Template Injection Vulnerability
→ No new info (linked only)
CVSS 3.16.3 MEDIUM
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
CISA KEV❌ No
Actively exploited❌ No
Patch available
7.2.1
CWECWE-74
PublishedJun 17, 2026
Last enriched5h agov2
Trending Score34
Source articles2
Independent2
Info Completeness9/14
Missing: epss, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-20190EXP
Cisco Identity Services Engine Information Disclosure Vulnerability
Trending: 66
CRITICALCVE-2026-20181EXP
Cisco Identity Services Engine Remote Code Execution Vulnerability
Trending: 65
CRITICALPRE-CVE
Cisco Identity Services Engine Remote Code Execution and Information Disclosure Vulnerabilities
Trending: 30
MEDIUMCVE-2026-20171
Cisco Nexus 3000 and 9000 Series Border Gateway Protocol Denial of Service Vulnerability
Trending: 2
MEDIUMCVE-2026-20206
Cisco ThousandEyes BrowserBot Command Injection Vulnerability
Trending: 2

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jun 17, 2026
Discovered by ZDM
Jun 17, 2026
Updated: patchAvailable
Jun 17, 2026
Patch Available
Jun 17, 2026

Version History

v2
Last enriched 5h ago
v2Tier C5h ago

Updated severity to CRITICAL, marked as actively exploited, and provided a patch available version 7.2.1.

patchAvailable
via VulDB
v16h ago

Initial creation