Cisco issues security updates to address a critical vulnerability in Unified Communications Manager (Unified CM), identified as CVE-2026-20230. The flaw can be exploited remotely and does not require authentication. Reported attack paths involve server-side request forgery (SSRF), where an attacker can induce the server to make unauthorized requests and write files to the system. From there, the attacker can escalate privileges to obtain root access. Multiple outlets report that proof-of-concept (PoC) exploit code is already available publicly, which can lower the effort needed to test or attempt exploitation. Cisco’s PSIRT indicates it has not observed the vulnerability being used in attacks at the time of reporting. The updates are aimed at preventing exploitation described in the PoC and mitigating the risk of file writing and subsequent privilege escalation. Organizations running affected Unified CM deployments are advised to apply Cisco’s released patches and follow vendor guidance to reduce exposure.
Cisco patches critical Unified CM flaw as proof-of-concept exploit code becomes available
Cisco issues security updates to address a critical vulnerability in Unified Communications Manager (Unified CM), identified as CVE-2026-20230. The flaw can be exploited remotely and does not require...
- CVE-2026-20230 is a critical Unified Communications Manager (Unified CM) vulnerability addressed by Cisco security updates.
- Attackers can exploit it remotely without authentication.
- The vulnerability is described as enabling server-side request forgery (SSRF) behavior.
- Exploitation can allow attackers to write files and escalate privileges to root.
- Proof-of-concept exploit code is publicly available; Cisco says it has not seen active exploitation in attacks yet.
Cisco has patched a bug in Unified Communications Manager that lets an unauthenticated attacker on the network write files to the box and, from there, climb to root. It is tracked as CVE-2026-20230, and proof-of-concept exploit code is already public. Cisco's PSIRT says it has not seen the flaw used in attacks yet. The PoC shortens that runway. The flaw is a server-side request forgery.
2 months agoCisco has released security updates to patch a critical-severity Unified Communications Manager (Unified CM) flaw that allows attackers to gain root privileges. [...]
2 months agoThe high-severity flaw can be exploited remotely, without authentication, in server-side request forgery (SSRF) attacks. The post Cisco Warns of Available PoC for Critical Unified CM Vulnerability appeared first on SecurityWeek.
2 months ago
Khalid Sheikh Mohammed trial set for June 2028 with three co-defendants
A U.S. military judge sets a trial for Khalid Sheikh Mohammed, accused by prosecutors as the “mastermind” of the Septemb...
Modern Asian-fusion pop-up announced for Perth, sparking debate on local dining needs
A “modern Asian fusion” pop-up is set to open in Perth, with coverage across major outlets highlighting the concept’s fo...
Murder investigation after Middlesbrough house fire kills two, police cite organised-crime links
Two people die in an early-hours house fire in Grangetown, Middlesbrough, prompting Cleveland Police to launch a murder...