AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2026-20350.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSUnscoredNo severity score in this snapshot.
EXPLOITATION STATUSNot listed in the cached KEV catalogThis does not establish absence of exploitation.
RECORD STATUSAwaiting NVD dataModified Sep 22, 2026

Disclosure summary

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cisco ThousandEyes Virtual Appliance. Authentication is required to exploit this v

Source-specific records & product guidance

Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.

ZDI: Published Advisories · RSS-7e70bfacba9a3c171fb31bfb1fd36afbc7b

Open original source · Updated Sep 22, 2026

ZDI-26-719: Cisco ThousandEyes Virtual Appliance DHCP Client Command Injection Remote Code Execution Vulnerability

CVE mention in publisher metadata; check the original affected versions.

Original records & references

PUBLISHED 2026-09-22T01:00:00-04:00
MODIFIED 2026-09-22T01:00:00-04:00
INGESTED 2026-10-08T12:25:18-04:00