cbcvebase.
CVE-2026-20046
published 2026-03-11

CVE-2026-20046: A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticated, local attacker to elevate privileges…

PriorityP351high8.8CVSS 3.1
AVLACLPRLUINSCCHIHAH
EPSS
0.14%
3.4th percentile
A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticated, local attacker to elevate privileges and gain full administrative control of an affected device. This vulnerability is due to incorrect mapping of a command to task groups within the source code. An attacker with a low-privileged account could exploit this vulnerability by using the CLI command to bypass the task group–based checks. A successful exploit could allow the attacker to elevate privileges and perform actions on an affected device without authorization checks.

Affected

59 ranges· showing 25
VendorProductVersion rangeFixed in
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software
ciscocisco_ios_xr_software

CVSS provenance

nvdv3.18.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
vendor_cisco8.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.