CVE-2024-20381 | Cisco IOS XR JSON-RPC API improper authorization (cisco-sa-nso-auth-bypass-QnTEesp)
A vulnerability, which was classified as critical, has been found in Cisco IOS XR, Network Services Orchestrator and Small Business RV Router. This issue affects some unknown processing of the component JSON-RPC API. The manipulation leads to improper authorization.
The identification of this vulnerability is CVE-2024-20381. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.