INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).

Six Maximum-Severity Flaws Found in Cisco Products

| 2026-08-21 12:30 CRITICAL HIGH
Executive Summary AI-generated
The recent incident data reveals a critical vulnerability in Cisco products, with six maximum-severity flaws found in the company's software. These vulnerabilities were identified through internal testing and patched by Cisco to prevent exploitation. The most severe flaw was rated CVSS 10.0, indicating its potential impact on systems worldwide. The patches also addressed four other vulnerabilities that affected various components of Cisco's products, including Crosswork Data Gateway, Crosswork Network Controller, and Crosswork Planning. These flaws were exploited through SQL injection, missing authentication, external control of file systems, insufficiently protected credentials, improper input validation, buffer overflows, out-of-bounds writes, improper access control, and improper restriction of operations within the bounds of a memory buffer vulnerabilities. The patches also fixed five vulnerabilities in Cisco Secure Workload Release 3.10.9.1 for the 3.10 branch and earlier, and four.0.4.16 for the 4.0 branch.
Technical Mitigations AI-generated
* Implement secure coding practices and follow best security guidelines to prevent similar vulnerabilities from occurring in the future. * Regularly review and update software dependencies, including libraries and frameworks, to ensure they have the latest security patches and updates. * Conduct thorough vulnerability scanning and penetration testing of systems and networks to identify potential weaknesses before they can be exploited. * Educate users and administrators on how to properly configure and use Cisco products to minimize the risk of vulnerabilities being introduced or exploited.
Technical Observables
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
CVE-2026-20349CVE-2026-20349 CVE-2026-20030CVE-2026-20030 CVE-2026-20317CVE-2026-20317 CVE-2026-20319CVE-2026-20319 CVE-2026-20315CVE-2026-20315 CVE-2026-20357CVE-2026-20357 CVE-2026-20358CVE-2026-20358 CVE-2026-20231CVE-2026-20231 CVE-2026-20359CVE-2026-20359 CVE-2026-20318CVE-2026-20318
Target & Sectors
Global Scope defensedefense
Incident Timeline
‎Aug 21, 2026
Threat actors exploited six maximum-security vulnerabilities in Cisco products to gain unauthorized access and control.
‎2026/08/21
Cisco patched nine critical flaws in its Cisco Secure Workload and Crosswork products.
organisation Secure Workload Flaws
organisation Crosswork Data Gateway
organisation Crosswork Planning
organisation SQL
organisation Crosswork Data Gateway,
organisation CVE-2026-20358
organisation CVE-2026-20359
infrastructure 9.9
organisation Cisco Secure Workload
infrastructure 7.2.1
infrastructure 7.2.1-SP
organisation Cisco Crosswork Release
organisation CVE-2026-20315
organisation CVE-2026
infrastructure 3.10.9
infrastructure 3.10
infrastructure 4.0.4
infrastructure 4.0
organisation Secure Workload Release 3.10.9.1
organisation Maximum-Severity Flaws Found
organisation Crosswork
organisation Secure Workload
organisation CVSS
organisation Vulnerability / Enterprise Security
infrastructure 8.6
organisation Secure Firewall Adaptive Security Appliance
organisation Secure Firewall Threat Defense
organisation the Cisco Crosswork
organisation CWE
organisation Nobody’s
organisation SecurityAffairs
infrastructure Ios
organisation Catalyst SD-WAN
organisation IOS XE
Tactical Metrics
Metrics
infrastructure
‎7.2.1
Software Version
Metrics
infrastructure
‎7.2.1-SP
Software Version
Metrics
infrastructure
‎3.10.9
Software Version
Metrics
infrastructure
‎3.10
Software Version
Metrics
infrastructure
‎4.0.4
Software Version
Metrics
infrastructure
‎4.0
Software Version
Metrics
infrastructure
‎8.6
Software Version
Metrics
infrastructure
‎9.9
Software Version
Metrics
infrastructure
‎Ios
Affected Product
Intelligence Sources