Cisco Industrial Ethernet Switches: denial of service
Medium5.3CVE-2026-20177 · Published Aug 19, 2026 · updated Aug 20, 2026
A vulnerability in the handling of management plane packets by Cisco Industrial Ethernet (IE) 1000 Series Switches could allow an unauthenticated, remote attacker to cause the device manager, SSH, or API to become inaccessible.This vulnerability is due to insufficient protection against management plane flooding attacks. An attacker could exploit this vulnerability by sending a high rate of ICMP, SSH, or HTTP traffic to an affected device. A successful exploit could allow the attacker to cause the CPU of the device to increase, resulting in a denial of service (DoS) condition on the device manager web GUI, SSH, or API. Data traffic through the device is not affected.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| Cisco Industrial Ethernet Switches Product | <= 1.1 | No fix yet |
| <= 1.2 | No fix yet | |
| <= 1.8.0 | No fix yet | |
| <= 1.8.2 | No fix yet |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-770
More Cisco advisories
All Cisco| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Aug 19 | Cisco Secure Workload: improper input validation | Critical9.6 | No fix yet |
| Aug 19 | Cisco Secure Workload: memory corruption | High7.5 | No fix yet |
| Aug 19 | Cisco BroadWorks: XML external entity | High7.5 | No fix yet |
| Aug 19 | Cisco Unified Intelligence Center: SQL injection | Medium6.5 | No fix yet |
| Aug 19 | Cisco Crosswork Planning: missing authentication | Critical10.0 | No fix yet |
| Aug 19 | As part of Cisco's ongoing commitment to proactive security and product quality | Critical10.0 | No fix yet |