CVE-2026-20155Disclosure(cisco / evolved_programmable_network_manager)

LOWCVSS 8.0 · HIGH

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Patch cisco evolved_programmable_network_manager systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) could allow an authenticated, remote attacker with low privileges to access sensitive information that they are not authorized to access. This vulnerability is due to improper authorization checks on a REST API endpoint of an affected device. An attacker could exploit this vulnerability by querying the affected endpoint. A successful exploit could allow the attacker to view session information of active Cisco EPNM users, including users with administrative privileges, which could result in the affected device being compromised.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-862

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • evolved_programmable_network_manager

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • 3 total mentions across 1 day

Affected systems

Vendors
Products
evolved_programmable_network_manager

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-04-02: 3Patch / Workaround · 2026-04-02: 1Technical Details · 2026-04-02: 304-02
Signal classification2 categories
Disclosure
266.7%
Patch
133.3%
Referenced assets4 URLs
Full discourse3 posts
  • CCB Alert@CCBalert
    Patch

    Warning: Critical flaws in #Cisco products. #CVE-2026-20160 CVSS: 9.8. #CVE-2026-20094 #CVE-2026-20095 #CVE-2026-20096 #CVE-2026-20097 and #CVE-2026-20155. These can lead to #RCE, root compromise, or exposure of sensitive session data! https://ccb.belgium.be/advisories/warning-remote-code-execution-vulnerabilities-multiple-cisco-products-patch-immediately #Patch #Patch #Patch

    Post summary

    Multiple newly disclosed high‑severity Cisco CVEs capable of RCE and root compromise are highlighted, with a link to an advisory urging immediate patching.

    01000205
    7.2K followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2026-20155 - High A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) could allow an authenticated, remote attacker with low privileges to access sensitiv... https://www.thehackerwire.com/vulnerability/CVE-2026-20155/ https://t.co/4YkcuIfX6v

    Post summary

    The post announces a newly discovered high‑severity vulnerability (CVE‑2026‑20155) in Cisco’s EPNM web interface that could allow authenticated remote attackers with low privileges to access sensitive information.

    0000036
    163 followersView on X
  • dbugs@ptdbugs
    Disclosure

    Cisco Evolved Programmable Network Manager Improper Authorization Vulnerability CVE: CVE-2026-20155 PT ID: PT-2026-29562 Vendor: Cisco Product: Cisco Evolved Programmable Network Manager (EPNM) CVSS: 8.0 Credits: n/a Description: A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) could allow an authenticated, remote attacker with low privileges to access sensitive information that they are not authorized to access. This vulnerability is due to improper authorization checks on a REST API endpoint of an affected device. An attacker could exploit this vulnerability by querying the affected endpoint. A successful exploit could allow the attacker to view session information of active Cisco EPNM users, including users with administrative privileges, which could result in the affected device being compromised. References: • https://dbugs.ptsecurity.com/vulnerability/CVE-2026-20155 • https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-epnm-improp-auth-mUwFWUU3 #dbugs_vuln

    Post summary

    A newly disclosed vulnerability (CVE‑2026‑20155) in Cisco EPNM’s web interface allows authenticated low‑privilege users to access sensitive session data; the issue is described with CVSS 8.0, but no PoC, exploit, patch, or active exploitation evidence is mentioned.

    00000155
    781 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appciscoevolved_programmable_network_manager---

Explore more