CRITICALVulnerability
Global
Cisco Patches 9.8 CVSS IMC and SSM Flaws Allowing Remote System Compromise
Thursday, April 2, 2026 at 03:21 PM UTC·Source: The Hacker News
Updated: Thursday, April 2, 2026 at 04:49 PM UTC
Executive Summary
Cisco has released updates to address a critical security flaw in the Integrated Management Controller (IMC) that, if successfully exploited, could allow an unauthenticated, remote attacker to bypass authentication and gain access to the system with elevated privileges. The vulnerability, tracked as CVE-2026-20093, carries a CVSS score of 9.8 out of a maximum of 10.0. "This
Analysis
Cisco has released updates to address a critical security flaw in the Integrated Management Controller (IMC) that, if successfully exploited, could allow an unauthenticated, remote attacker to bypass authentication and gain access to the system with elevated privileges. The vulnerability, tracked as CVE-2026-20093, carries a CVSS score of 9.8 out of a maximum of 10.0. "This