Network Management & Observability
CVE-2026-20326: Cisco Nexus Dashboard hardening: Missing Authentication for Critical FunctionNew!!
Cisco published a Critical-rated advisory that includes CVE-2026-20326. Cisco does not separately state a CVE-specific SIR. TechGeeks scope, action, fixed-release guidance, evidence status, and primary Cisco sources.
CVE-2026-20350: Cisco ThousandEyes Virtual Appliance Authenticated Web Interface Command Injection VulnerabilityNew!!
Cisco published a Medium-rated advisory that includes CVE-2026-20350. Cisco does not separately state a CVE-specific SIR. TechGeeks scope, action, fixed-release guidance, evidence status, and primary Cisco sources.
CVE-2026-20360: Cisco Nexus Dashboard hardening: Information Exposure & Insecure HandlingNew!!
Cisco published a Critical-rated advisory that includes CVE-2026-20360. Cisco does not separately state a CVE-specific SIR. TechGeeks scope, action, fixed-release guidance, evidence status, and primary Cisco sources.
CVE-2026-20361: Cisco Nexus Dashboard hardening: SQL InjectionNew!!
Cisco published a Critical-rated advisory that includes CVE-2026-20361. Cisco does not separately state a CVE-specific SIR. TechGeeks scope, action, fixed-release guidance, evidence status, and primary Cisco sources.
CVE-2026-76409: Cisco Nexus Dashboard hardening: Improper Limitation of a PathnameNew!!
Cisco published a Critical-rated advisory that includes CVE-2026-76409. Cisco does not separately state a CVE-specific SIR. TechGeeks scope, action, fixed-release guidance, evidence status, and primary Cisco sources.
CVE-2026-20325: Cisco Nexus Dashboard hardening: Improper Neutralization of Special Elements used in a CommandNew!!
Cisco published a Critical-rated advisory that includes CVE-2026-20325. Cisco does not separately state a CVE-specific SIR. TechGeeks scope, action, fixed-release guidance, evidence status, and primary Cisco sources.
CVE-2026-20322: Cisco Nexus Dashboard hardening: Improper Access ControlNew!!
Cisco published a Critical-rated advisory that includes CVE-2026-20322. Cisco does not separately state a CVE-specific SIR. TechGeeks scope, action, fixed-release guidance, evidence status, and primary Cisco sources.
CVE-2025-34026: Versa Concerto Improper Authentication VulnerabilityNew!!
CISA lists CVE-2025-34026 as exploited. TechGeeks action notice for Versa Concerto Improper Authentication Vulnerability, with scope, remediation, investigation guidance, and official sources.
CVE-2025-37164: HPE OneView unauthenticated remote code executionNew!!
CISA lists CVE-2025-37164 as exploited. TechGeeks action notice for HPE OneView unauthenticated remote code execution, with scope, remediation, investigation guidance, and official sources.
CVE-2026-20127: Cisco Catalyst SD-WAN controller authentication bypass to fabric administrationNew!!
CISA lists CVE-2026-20127 as exploited. TechGeeks action notice for Cisco Catalyst SD-WAN controller authentication bypass to fabric administration, with scope, remediation, investigation guidance, and official sources.
