본문 바로가기
취약점 정보

Cisco 제품 보안 업데이트 권고

by TACHYON & ISARC 2026. 4. 6.

개요

Cisco 사는 제품에서 발생하는 취약점에 대한 보안 업데이트를 발표하고, 관련 취약점을 해결하기 위해 최신 버전으로 업데이트할 것을 권고하였다

 

 

취약점 정보

Cisco Secure Firewall Management Center Software 인증 우회 취약점

CVE-2026-20079

 

Cisco Secure Firewall Management Center Software SQL Injection 취약점

CVE-2026-20001, CVE-2026-20002, CVE-2026-20003

 

Cisco Secure Firewall Adaptive Security Appliance 및 Secure Firewall Threat Defense Software 원격 액세스 SSL VPN 서비스 거부(DoS) 취약점

CVE-2026-20100, CVE-2026-20101, CVE-2026-20103

 

Cisco Secure Firewall Adaptive Security Appliance 및 Secure Firewall Threat Defense Software VPN 웹 서버 서비스 거부(DoS) 취약점

CVE-2026-20039

 

Cisco Secure Firewall Adaptive Security Appliance 및 Secure Firewall Threat Defense Software의 IKEv2 서비스 거부(DoS) 취약점

CVE-2026-20013, CVE-2026-20014, CVE-2026-20015

 

Cisco Secure Firewall Adaptive Security Appliance 및 Secure Firewall Threat Defense Software의 IPsec 서비스 거부(DoS) 취약점

CVE-2026-20049

 

Cisco Secure Firewall Adaptive Security Appliance Software 다중 컨텍스트 모드 SCP 무단 파일 액세스 취약점

CVE-2026-20062

 

Cisco Secure Firewall Adaptive Security Appliance Software TCP Flood 서비스 거부(DoS) 취약점

CVE-2026-20082

 

Cisco Secure Firewall Management Center Software SQL Injection 취약점

CVE-2024-20340

 

Cisco Adaptive Security Appliance 및 Firepower Threat Defense Software 명령어 삽입 취약점

CVE-2024-20358

 

Cisco Webex Services XSS취약점

CVE-2026-20149

 

다수의 Cisco 제품 Snort 3 서비스 거부(DoS) 취약점

CVE-2026-20005, CVE-2026-20065, CVE-2026-20066

 

Cisco Secure Firewall Management Center 및 Secure Firewall Threat Defense Software path traversal 취약점

CVE-2026-20018

 

Cisco Secure Firewall Threat Defense Software TLS의 Snort 3 탐지 엔진에서 서비스 거부 취약점

CVE-2026-20006

 

Cisco Secure Firewall Threat Defense Software Snort 3 SSL 메모리 관리 서비스 거부 취약점

CVE-2026-20052

 

다수의 Cisco 제품 Snort 3 Visual Basic for Applications 서비스 거부(DoS) 취약점

CVE-2026-20053, CVE-2026-20054, CVE-2026-20057

 

Cisco Secure Firewall Threat Defense Software Snort 심층 검사 우회 취약점

CVE-2026-20007

 

Cisco Secure Firewall Threat Defense Software SSL 복호화 정책 서비스 거부 취약점

CVE-2026-20050

 

Cisco Secure Firewall Adaptive Security Appliance Secure Firewall Threat Defense Software 인증된 명령어 삽입 취약점

CVE-2026-20016, CVE-2026-20017, CVE-2026-20063

 

Cisco Secure Firewall Management Center Software 명령어 삽입 취약점

CVE-2026-20044

 

ClamAV Cascading Style Sheets 이미지 구문 분석 오류 처리 서비스 거부(DoS) 취약점

CVE-2026-20031

 

Cisco IOS XR Egress Packet Network Interface Aligner Interrupt 서비스 거부(DoS) 취약점

CVE-2026-20118

 

Cisco IOS XR Software Multi-Instance Intermediate System-to-Intermediate System 서비스 거부(DoS) 취약점

CVE-2026-20074

 

Cisco IOS XR Software CLI 권한 상승 취약점

CVE-2026-20040, CVE-2026-20046

 

다수의 Cisco Contact Center 제품들에서 XSS 취약점

CVE-2026-20116, CVE-2026-20117

 

Cisco Catalyst SD-WAN 취약점

CVE-2026-20122, CVE-2026-20126, CVE-2026-20128

 

Cisco Secure Firewall Management Center Software 원격 코드 실행 취약점

CVE-2026-20131

 

Cisco Catalyst 및 Rugged Series Switches용 Cisco IOS XE Software의 Secure Boot 우회 취약점

CVE-2026-20104

 

Cisco IOS XE Wireless Controller Software for the Catalyst CW9800 Family CAPWAP 서비스 거부(DoS) 취약점

CVE-2026-20086

 

Cisco IOS XE Software TLS 메모리 소진 서비스 거부(DoS) 취약점

CVE-2026-20004

 

Cisco IOS Software 및 IOS XE Software Release 3E HTTP 서버 서비스 거부(DoS) 취약점

CVE-2026-20125

 

Catalyst 9000 Series Switches용 Cisco IOS XE Software의 DHCP 스누핑 서비스 거부(DoS) 취약점

CVE-2026-20084

 

Cisco IOS, IOS XE, Secure Firewall Adaptive Security Appliance, 그리고 Secure Firewall Threat Defense Software IKEv2 서비스 거부(Dos) 취약점

CVE-2026-20012

 

Cisco Catalyst SD-WAN Manager XSS취약점

CVE-2026-20108

 

Cisco IOS XE Software Secure Copy Protocol Server 서비스 거부(DoS) 취약점

CVE-2026-20083

 

Cisco IOx 애플리케이션 호스팅 환경 저장된 XSS취약점

CVE-2026-20112

 

Cisco IOx 애플리케이션 호스팅 환경 캐리지 리턴 라인 피드 삽입 취약점

CVE-2026-20113

 

Cisco IOS XE Software의 Meraki 정보 유출 취약점

CVE-2026-20115

 

Cisco IOS XE Software Lobby Ambassador 권한 상승 취약점

CVE-2026-20114

 

Cisco Nexus Dashboard Fabric Controller 임의 명령 실행 취약점

CVE-2024-20432

 

Cisco Smart Software Manager On-Prem 임의 명령 실행 취약점

CVE-2026-20160

 

Cisco Integrated Management Controller 인증 우회 취약점

CVE-2026-20093

 

Cisco Evolved Programmable Network Manager 부적절한 권한 부여 취약점

CVE-2026-20155

 

Cisco Smart Software Manager On-Prem 권한 상승 취약점

CVE-2026-20151

 

Cisco Integrated Management Controller 명령어 삽입 및 원격 코드 실행 취약점

CVE-2026-20094, CVE-2026-20095, CVE-2026-20096

 

Cisco Nexus Dashboard Insights 임의 파일 쓰기 취약점

CVE-2026-20174

 

Cisco Nexus Dashboard 및 Nexus Dashboard Insights SSRF취약점

CVE-2026-20041

 

Cisco Nexus Dashboard Configuration Backup REST API 무단 접근 취약점

CVE-2026-20042

 

Cisco Integrated Management Controller XSS취약점

CVE-2026-20085, CVE-2026-20087, CVE-2026-20088

 

Cisco IOS XE Software 서비스 거부(DoS) 취약점

CVE-2026-20110

 

 

참고자료

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-sql-injection-2qH6CcJd

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-vpn-m9sx6MbC

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-vpn-dos-SpOFF2Re

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-ikev2-dos-eBueGdEG

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-esp-dos-uv7yD8P5

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asa-scpcxt-filecpy-rgeP73nE

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asa-dos-FCvLD6vR

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-sql-inject-2EnmTC8v

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-cmd-inj-ZJV8Wysm

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-xss-TZFTbbwN

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-snort3-multi-dos-XFWkWSwz

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftdfmc-dir-trav-wERgjhWq

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-tcp-dos-rHfqnwRg

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-snort3ssl-FBEKYXpH

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-snort3-vbavuls-96UcVVed

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-snort-bypass-rLggKzVF

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-dnd-dos-bpEcg7B7

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-cmd-inj-mTzGZexf

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-cmd-inject-S9ZM4EJf

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-clamav-css-Fn4QSZ

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-xrncs-epni-int-dos-TWMffUsN

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-isis-dos-kDMxpSzK

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxr-privesc-bF8D5U4W

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cc-xss-MrNAH5Jh

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-rce-NKhnULJh

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-xe-secureboot-bypass-B6uYxYSZ

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wlc-dos-hnX5KGOm

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-tls-dos-TVgLDEZL

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ios-http-dos-sbv8XRpL

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bootp-WuBhNBxA

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asa-ftd-ios-dos-kPEpQGGK

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-vmanage-xss-ZqkhP9W9

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-scp-dos-duAdXtCg

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iox-xss-LpGkzwtJ

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iox-crlf-NvgKTKJZ

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe_infodis-6J847uEB

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-lobby-privesc-KwxBqJy

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ndfc-cmdinj-UvYZrKfr

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ssm-cli-execution-cHUcWuNr

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-auth-bypass-AgG2BxTn

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-epnm-improp-auth-mUwFWUU3

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cssm-priv-esc-xRAnOuO8

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-cmd-inj-3hKN3bVt

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ndi-afw-rJuRC5dZ

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nd-ssrf-NAen4O7r

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nd-cbid-5YqkOSHu

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-xss-A2tkgVAB

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-mntc-dos-LZweQcyq