• News/
  • bleepingcomputer-20260604110950

Cisco warns of critical Unified CM flaw with PoC exploit code

BleepingComputer
·
Sergiu Gatlan
·
Published Jun 4, 2026
·
Updated

Cisco has released security updates to patch a critical-severity Unified Communications Manager (Unified CM) flaw that allows attackers to gain root privileges. Cisco Unified CM (formerly known as Cisco CallManager) serves as the central control system for Cisco IP telephony systems, handling device management, call routing, and telephony features. The vulnerability (tracked as CVE-2026-20230) can be exploited remotely by threat actors without privileges in low-complexity server-side request forgery (SSRF) attacks. "An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to write files to the underlying operating system that could be used later to elevate to root," Cisco said. "Cisco has assigned this security advisory a Security Impact Rating (SIR) of Critical rather than High as the score indicates. The reason is that exploitation of this vulnerability could result in an attacker elevating privileges to root." Cisco's Product Security Incident Response Team (PSIRT) is aware of publicly available proof-of-concept exploit code for CVE-2026-20230, but has yet to find evidence of active exploitation or targeting. Luckily, the vulnerability only impacts systems where the WebDialer service is enabled, and WebDialer is disabled by default. To check whether WebDialer is enabled, log in to Cisco Unified CM Administration, go to "Cisco Unified Serviceability," click "Go," and check the servic...

Read full article

Affected Software

2 affected components
Cisco Unified Communications Manager
Cisco WebDialer service
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the main topic of this article?

The article discusses a critical vulnerability in Cisco Unified Communications Manager and its security updates.

2

What security implications are discussed in the article?

The flaw allows attackers to gain root privileges, which poses a significant security risk to Cisco IP telephony systems.

3

What products or software are affected by the vulnerability?

The affected product is Cisco Unified Communications Manager, along with the Cisco WebDialer service.

4

What solution does Cisco provide for the critical flaw?

Cisco has released security updates to patch the critical vulnerability in Unified Communications Manager.

5

When was the article published?

The article was published on June 4, 2026.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203