CVE-2026-20074
Cisco Cisco IOS XR Software, ios xr
A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) multi-instance routing feature of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause the IS-IS process to restart unexpectedly. This vulnerability is due to insufficient input validation of ingress IS-IS packets. An attacker could exploit this vulnerability by sending crafted IS-IS packets to an affected device after forming an adjacency. A successful exploit could allow the attacker to cause the IS-IS process to restart unexpectedly, resulting in a temporary loss of connectivity to adver...
- CVSS
- 7.4
- EPSS
- 0.16% 5.64% percentile
- CISA KEV
- Not listed
- Published
- 2026.03.12