CVE-2026-20188: Cisco Crosswork Network Controller and Cisco Network Services Orchestrator Advisory
Following the initial publication of the Security Advisory about a denial of service (DoS) condition in Cisco Crosswork Network Controller and Cisco Network Services Orchestrator (NSO), additional information has been made available to the Cisco Product Security Incident Response Team (PSIRT). Upon further analysis, the Cisco PSIRT has reclassified this issue as a customer-configurable, resource management issue rather than a security vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-20188?
CVE-2026-20188 has been assigned a Medium severity level due to its potential to cause a denial of service.
How do I fix CVE-2026-20188?
To mitigate CVE-2026-20188, users should apply the latest software updates provided by Cisco for affected products.
What products are affected by CVE-2026-20188?
CVE-2026-20188 affects Cisco Crosswork Network Controller and Cisco Network Services Orchestrator.
Can CVE-2026-20188 be exploited remotely?
Yes, CVE-2026-20188 can be exploited remotely without authentication, leading to connection exhaustion.
What are the potential impacts of CVE-2026-20188?
The potential impact of CVE-2026-20188 is a denial of service, which may disrupt normal operation of the affected Cisco systems.