CVE 7.5 HIGH

Cisco Crosswork Network Controller and Cisco Network Services Orchestrator Connection Exhaustion Denial of Service Vulnerability_CVE-2026-20188

7.5 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Description

A vulnerability in the connection-handling mechanism of Cisco Crosswork Network Controller (CNC) and Cisco Network Services Orchestrator (NSO) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected system.

This vulnerability is due to an inadequate implementation of rate-limiting on incoming network connections. An attacker could exploit this vulnerability by sending a large number of connection requests to an affected system. A successful exploit could allow the attacker to exhaust available connection resources, causing Cisco CNC and Cisco NSO to become unresponsive and resulting in a DoS condition for legitimate users and dependent services. A manual reboot of the system is required to recover from this condition.

Basic Information

ID CVE-2026-20188
Source cisco
Published May 6, 2026 at 16:15

Affected Product

Vendor Cisco
Product Cisco Crosswork Network Change Automation
Version 3.0.0
Affected Versions Cisco Cisco Crosswork Network Change Automation 3.0.0
Cisco Cisco Crosswork Network Change Automation 1.0.0
Cisco Cisco Crosswork Network Change Automation 2.0.2
Cisco Cisco Crosswork Network Change Automation 4.0.0
Cisco Cisco Crosswork Network Change Automation 4.1.0
Cisco Cisco Crosswork Network Change Automation 4.5.0
Cisco Cisco Crosswork Network Change Automation 5.0.0
Cisco Cisco Crosswork Network Change Automation 4.5.1
Cisco Cisco Crosswork Network Change Automation 4.5.2
Cisco Cisco Crosswork Network Change Automation 5.0.2
Cisco Cisco Crosswork Network Change Automation 4.1.3
Cisco Cisco Crosswork Network Change Automation 6.0.0
Cisco Cisco Crosswork Network Change Automation 7.0.0
Cisco Cisco Crosswork Network Change Automation 4.1.4
Cisco Cisco Crosswork Network Change Automation 5.0.4
Cisco Cisco Crosswork Network Change Automation 7.1.0
Cisco Cisco Crosswork Network Change Automation 7.0.3
Cisco Cisco Crosswork Network Change Automation 7.1.3
Cisco Cisco Network Services Orchestrator 5.7
Cisco Cisco Network Services Orchestrator 5.7.1
Cisco Cisco Network Services Orchestrator 5.7.1.1
Cisco Cisco Network Services Orchestrator 5.7.2
Cisco Cisco Network Services Orchestrator 5.7.2.1
Cisco Cisco Network Services Orchestrator 5.7.3
Cisco Cisco Network Services Orchestrator 5.8
Cisco Cisco Network Services Orchestrator 5.6.6.1
Cisco Cisco Network Services Orchestrator 5.7.5.1
Cisco Cisco Network Services Orchestrator 5.6.7.1
Cisco Cisco Network Services Orchestrator 5.6.7
Cisco Cisco Network Services Orchestrator 5.8.1
Cisco Cisco Network Services Orchestrator 5.6.6
Cisco Cisco Network Services Orchestrator 5.8.2.1
Cisco Cisco Network Services Orchestrator 5.7.5
Cisco Cisco Network Services Orchestrator 5.7.4
Cisco Cisco Network Services Orchestrator 5.8.2
Cisco Cisco Network Services Orchestrator 5.6.7.2
Cisco Cisco Network Services Orchestrator 5.7.6
Cisco Cisco Network Services Orchestrator 5.7.6.1
Cisco Cisco Network Services Orchestrator 5.8.3
Cisco Cisco Network Services Orchestrator 5.6.8
Cisco Cisco Network Services Orchestrator 5.7.6.2
Cisco Cisco Network Services Orchestrator 5.8.4
Cisco Cisco Network Services Orchestrator 5.7.7
Cisco Cisco Network Services Orchestrator 5.6.9
Cisco Cisco Network Services Orchestrator 5.6.8.1
Cisco Cisco Network Services Orchestrator 5.8.5
Cisco Cisco Network Services Orchestrator 5.7.8
Cisco Cisco Network Services Orchestrator 6.0
Cisco Cisco Network Services Orchestrator 5.7.8.1
Cisco Cisco Network Services Orchestrator 6.0.1
Cisco Cisco Network Services Orchestrator 5.6.10
Cisco Cisco Network Services Orchestrator 5.8.6
Cisco Cisco Network Services Orchestrator 6.0.1.1
Cisco Cisco Network Services Orchestrator 6.0.2
Cisco Cisco Network Services Orchestrator 5.7.9
Cisco Cisco Network Services Orchestrator 5.6.11
Cisco Cisco Network Services Orchestrator 5.8.7
Cisco Cisco Network Services Orchestrator 6.0.3
Cisco Cisco Network Services Orchestrator 5.7.10
Cisco Cisco Network Services Orchestrator 5.6.12
Cisco Cisco Network Services Orchestrator 5.8.8
Cisco Cisco Network Services Orchestrator 6.0.4
Cisco Cisco Network Services Orchestrator 5.7.10.1
Cisco Cisco Network Services Orchestrator 6.1
Cisco Cisco Network Services Orchestrator 5.7.6.3
Cisco Cisco Network Services Orchestrator 5.7.11
Cisco Cisco Network Services Orchestrator 6.0.5
Cisco Cisco Network Services Orchestrator 5.6.13
Cisco Cisco Network Services Orchestrator 5.8.9
Cisco Cisco Network Services Orchestrator 6.1.1
Cisco Cisco Network Services Orchestrator 5.7.10.2
Cisco Cisco Network Services Orchestrator 6.0.6
Cisco Cisco Network Services Orchestrator 5.7.12
Cisco Cisco Network Services Orchestrator 5.6.14
Cisco Cisco Network Services Orchestrator 5.8.10
Cisco Cisco Network Services Orchestrator 6.0.7
Cisco Cisco Network Services Orchestrator 5.7.13
Cisco Cisco Network Services Orchestrator 5.8.11
Cisco Cisco Network Services Orchestrator 6.0.8
Cisco Cisco Network Services Orchestrator 5.6.14.1
Cisco Cisco Network Services Orchestrator 5.8.12
Cisco Cisco Network Services Orchestrator 6.0.9
Cisco Cisco Network Services Orchestrator 5.8.13
Cisco Cisco Network Services Orchestrator 5.7.14
Cisco Cisco Network Services Orchestrator 6.0.10
Cisco Cisco Network Services Orchestrator 6.0.11
Cisco Cisco Network Services Orchestrator 5.7.15
Cisco Cisco Network Services Orchestrator 6.0.12
Cisco Cisco Network Services Orchestrator 5.7.9.1
Cisco Cisco Network Services Orchestrator 5.7.15.1
Cisco Cisco Network Services Orchestrator 6.0.13
Cisco Cisco Network Services Orchestrator 5.6.14.3
Cisco Cisco Network Services Orchestrator 5.8.13.1
Cisco Cisco Network Services Orchestrator 5.7.16
Cisco Cisco Network Services Orchestrator 5.7.17
Cisco Cisco Network Services Orchestrator 5.7.17.1
Cisco Cisco Network Services Orchestrator 5.7.18
Cisco Cisco Network Services Orchestrator 5.7.19
Cisco Cisco Network Services Orchestrator 5.7.19.1

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.