Medium severity6.4NVD Advisory· Published May 6, 2026· Updated Jun 29, 2026
CVE-2026-20169
CVE-2026-20169
Description
A vulnerability in the web-based management interface of Cisco IoT Field Network Director could allow an authenticated, remote attacker with low privileges to access files and execute commands on a remote router.
This vulnerability is due to insufficient input validation of user-supplied data. An attacker could exploit this vulnerability by submitting crafted input in the web-based management interface. A successful exploit could allow the attacker to create, read, or delete files and execute limited commands in user EXEC mode on a remote router.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:cisco:iot_field_network_director:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:cisco:iot_field_network_director:*:*:*:*:*:*:*:*range: <5.0.0-117
- (no CPE)
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.