Cisco Umbrella Virtual Appliance < 3.8.5 Privilege Escalation (cisco-sa-umbrella-priv-esc-F4wJB7AU)

medium Nessus Plugin ID 321926

Synopsis

The remote device is missing a vendor-supplied security patch.

Description

According to its self-reported version, Cisco Umbrella Insights Virtual Appliance is affected by a vulnerability.

- A vulnerability in the vmadmin CLI of Cisco Umbrella Virtual Appliance could allow an authenticated, local attacker to elevate privileges on an affected device. This vulnerability is due to insufficient validation of user-supplied commands. An attacker with vmadmin privileges could exploit this vulnerability by using certain commands at the CLI. A successful exploit could allow the attacker to elevate privileges to root.
(CVE-2026-20246)

Please see the included Cisco BIDs and Cisco Security Advisory for more information.

Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.

Solution

Upgrade to Cisco Umbrella Virtual Appliance version 3.8.5 or later.

See Also

http://www.nessus.org/u?d0310f9c

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwt75291

Plugin Details

Severity: Medium

ID: 321926

File Name: cisco-sa-umbrella-priv-esc-F4wJB7AU.nasl

Version: 1.1

Type: Combined

Family: CISCO

Published: 6/22/2026

Updated: 6/22/2026

Configuration: Enable paranoid mode

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 6.0

CVSS v2

Risk Factor: Medium

Base Score: 5.9

Vector: CVSS2#AV:L/AC:L/Au:M/C:C/I:C/A:N

CVSS Score Source: CVE-2026-20246

CVSS v3

Risk Factor: Medium

Base Score: 6

Vector: CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N

Vulnerability Information

CPE: cpe:/o:cisco:umbrella_insights_virtual_appliance

Required KB Items: Settings/ParanoidReport

Patch Publication Date: 6/17/2026

Vulnerability Publication Date: 6/17/2026

Reference Information

CVE: CVE-2026-20246

CISCO-SA: cisco-sa-umbrella-priv-esc-F4wJB7AU

IAVA: 2026-A-0598

CISCO-BUG-ID: CSCwt75291