vulnerability
Cisco Unified CM flaw CVE-2026-20230 now exploited in attacks
High
Summary
A high-severity Server-Side Request Forgery (SSRF) vulnerability, CVE-2026-20230, in Cisco Unified Communications Manager is currently being actively exploited by threat actors. This allows attackers to gain root privileges on affected systems through crafted HTTP requests, posing a significant risk to organizations using the vulnerable software. The vulnerability was initially disclosed by SSD Secure and is now being tracked by threat intelligence firm Defused.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data