Critical Cisco Unified CM and SME Flaw Enables Remote Attacker to Launch SSRF Attacks

Cisco has warned customers about a critical server-side request forgery (SSRF) flaw in Cisco Unified Communications Manager (Unified CM) and Unified CM Session Management Edition (Unified CM SME) that allows remote, unauthenticated attackers to write files on the underlying OS and potentially gain root privileges. Tracked as CVE-2026-20230 and rated Critical by Cisco despite a […]

The post Critical Cisco Unified CM and SME Flaw Enables Remote Attacker to Launch SSRF Attacks appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: