What We Know

La traducción al español no está disponible temporalmente; se muestra el original en inglés.

CoolingJust now

Cisco Unified CM flaw CVE-2026-20230 now exploited in attacks

  • 8 sources analyzed
  • Source mix: Web
  • Momentum: Cooling

What We Know

Security researchers and multiple security news sites report that CVE-2026-20230, a high‑severity server‑side request forgery (SSRF) vulnerability in Cisco Unified Communications Manager (Unified CM/CUCM), is being actively exploited in the wild. Reports say the flaw can be triggered by unauthenticated HTTP requests to cause SSRF, perform arbitrary file writes, and enable attackers to drop webshells on vulnerable appliances. Several outlets note attacks began weeks after a patch was released.

Technical disclosure teams and independent researchers published detailed writeups and demonstrations of the full exploit chain. According to the reporting, attackers have used the vulnerability to write files that lead to remote code execution and, in at least theoretical demonstrations, could escalate to root‑level access. The activity was described both as active exploitation in the wild and as a same‑day/full‑chain RCE sweep in technical analysis, and vendors and security sites have urged affected customers to address the issue.

Source Comparison

Aligned reporting
8 corroborates - 0 adds context - 0 conflicts

Corroborates