CERT-In Flags Critical Vulnerabilities in Cisco Crosswork Products, Urges Users to Apply Updates

CERT-In Flags Critical Vulnerabilities in Cisco Crosswork Products, Urges Users to Apply Updates

New Delhi: The Indian Computer Emergency Response Team (CERT-In) has issued a critical vulnerability note for multiple Cisco Crosswork products, warning that the security flaws could allow a remote attacker to execute unauthorised SQL queries, bypass authentication, manipulate file paths or access inadequately protected credentials on an affected system.

The vulnerability note, CIVN-2026-0429, was originally issued on August 31, 2026, and carries a CRITICAL severity rating.

Affected Cisco Crosswork products

  • Cisco Crosswork Data Gateway version 7.2.1 and earlier
  • Cisco Crosswork Network Controller version 7.2.1 and earlier
  • Cisco Crosswork Planning version 7.2.1 and earlier
  • Cisco Crosswork Workflow Manager version 2.1.1 and earlier

Cisco Crosswork Data Gateway, Crosswork Network Controller, Crosswork Planning and Crosswork Workflow Manager are components of Cisco's Crosswork network automation and management portfolio.

According to CERT-In, the vulnerabilities exist due to improper neutralisation of SQL commands, missing authentication for critical functions, inadequate validation of file names or paths, and insufficient protection of credentials in the affected products.

An attacker could exploit these vulnerabilities by sending specially crafted requests or accessing affected functions and resources, depending on the specific vulnerability.

Successful exploitation could allow an attacker to execute unauthorised database operations, bypass authentication, manipulate files or paths, access sensitive credentials and compromise affected Cisco Crosswork systems.

Risk and impact

CERT-In has assessed the vulnerabilities as posing a critical risk of unauthorised access, information disclosure or modification, compromise of system resources and disruption of affected network management services.

The potential impact includes unauthorised access, sensitive information disclosure or modification, file manipulation, credential compromise and disruption of affected systems and services.

The advisory is targeted at IT administrators and individuals responsible for maintaining and updating Cisco Crosswork products.

CERT-In recommends updates

CERT-In has advised users to apply appropriate updates as mentioned in the Cisco advisory.

The vulnerabilities are tracked as CVE-2026-20030, CVE-2026-20357, CVE-2026-20358 and CVE-2026-20359.