news.mlab.sh
Back to the feed
vulnerability

Cisco Unified CM flaw CVE-2026-20230 now exploited in attacks

High
Summary

A high-severity Server-Side Request Forgery (SSRF) vulnerability, CVE-2026-20230, in Cisco Unified Communications Manager is currently being actively exploited by threat actors. This allows attackers to gain root privileges on affected systems through crafted HTTP requests, posing a significant risk to organizations using the vulnerable software. The vulnerability was initially disclosed by SSD Secure and is now being tracked by threat intelligence firm Defused.

Read the full article at BleepingComputer

Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data

Report an error
Confirmed errors are fixed and listed on /corrections.