CVE-2026-76500
Vulnerability Summary
Timeline
Description
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Application Policy Infrastructure Controller (APIC) engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76500 are related to issues with improper control of a resource through its lifetime that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-664.
CVSS Metrics
- v3.1•CRITICAL•Score: 9.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Techniques & Countermeasures
- CWE-664•Improper Control of a Resource Through its Lifetime
The product does not maintain or incorrectly maintains control over a resource throughout its lifetime of creation, use, and release.
Affected Systems
- cisco•cisco application policy infrastructure controller (apic)
5.2(1g) | 5.2(2e) | 5.2(2f) | 5.2(2g) | 5.2(2h) | 5.2(3f) | 5.2(3e) | 5.2(3g) | 5.2(4d) | 5.2(4e) | 5.2(5d) | 5.2(5c) | 6.0(1g) | 5.2(5e) | 5.2(4f) | 5.2(6e) | 6.0(1j) | 5.2(6g) | 5.2(7f) | 5.2(7g) | 6.0(2h) | 5.2(6h) | 5.2(4h) | 5.2(8d) | 6.0(2j) | 5.2(8e) | 6.0(3d) | 6.0(3e) | 5.2(8f) | 5.2(8g) | 5.3(1d) | 5.2(8h) | 6.0(4c) | 5.3(2a) | 5.2(8i) | 6.0(5h) | 5.3(2b) | 6.0(3g) | 6.0(5j) | 5.3(2c) | 6.0(6c) | 6.1(1f) | 6.0(7e) | 5.3(2d) | 6.0(8d) | 6.0(8e) | 6.1(2f) | 6.0(8f) | 5.3(2e) | 6.1(2g) | 5.3(2f) | 6.0(9c) | 6.1(3f) | 6.0(9d) | 6.0(6g) | 6.0(6h) | 6.0(8h) | 6.1(3g) | 6.1(4h) | 6.0(9e) | 6.1(5e) | 6.2(1f) | 6.2(1g) | 6.0(9f) | 6.2(2e)