Výsledky hledání

výrobce: Cisco× v celém archivu zrušit filtry

142 karet z 192 položek · strana 2 z 3 CZ · EN/orig

3

SPOJENO PŘES CVE Cisco Desk Phone 9800 Series, IP Phone 7800 and 8800 Series, and Video Phone 8875 with SIP Software Denial of Service Vulnerability

Classification: Important, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 7.5, CVEs: CVE-2026-20281, Summary: A vulnerability in Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video Phone 8875 that are running Cisco Session Initiation Protocol (SIP) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper memory management when an affected…

EPSS 0.00 CVSS 7.5 CVE-2026-20281 Cisco FI US

tg: zranitelnost tp: DDoS

· NCSC-FI · Cisco Desk Phone 9800 Series, IP Phone 7800 and 8800 Series, and Video Phone 8875 with SIP Software Denial of Service Vulnerability · Cisco PSIRT · Cisco Desk Phone 9800 Series, IP Phone 7800 and 8800 Series, and Video Phone 8875 with SIP Software Denial of Service Vulnerability

SPOJENO PŘES CVE Cisco IOS XR Software Security Hardening Release: September 2026

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.8, CVEs: CVE-2026-20274, CVE-2026-20275, CVE-2026-20276, CVE-2026-20277, CVE-2026-20278, CVE-2026-20279, CVE-2026-20280, Summary: As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered…

EPSS 0.01 CVSS 9.8 CVE-2026-20274 CVE-2026-20275 CVE-2026-20276 CVE-2026-20277 CVE-2026-20278 CVE-2026-20279 CVE-2026-20280 Cisco FI US

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Cisco IOS XR Software Security Hardening Release: September 2026 · Cisco PSIRT · Cisco IOS XR Software Security Hardening Release: September 2026

SPOJENO PŘES CVE Cisco Nexus 9000 Series Switches Silicon One Remote Code Execution Vulnerability

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.8, CVEs: CVE-2026-20212, Summary: A vulnerability in the Silicon One integration for Cisco Nexus 9000 Series Switches could allow an unauthenticated, remote attacker to execute code with root privileges. This vulnerability exists because TCP ports 43210 and 43211 are accessible in the default Layer 3 (L3) virtual routing and forwarding (VRF). A successful exploit could allow the attacker to connect to…

EPSS 0.01 CVSS 9.8 CVE-2026-20212 Cisco FI US

tg: zranitelnost

· NCSC-FI · Cisco Nexus 9000 Series Switches Silicon One Remote Code Execution Vulnerability · Cisco PSIRT · Cisco Nexus 9000 Series Switches Silicon One Remote Code Execution Vulnerability

1

1

“Sorry, I can’t help with that”: How your guardrails might become the attacker’s best friend

Welcome to this week’s edition of the Threat Source newsletter. Hello, everyone. Long time reader, first time writer here at the Threat Source newsletter! I wanted to start out by introducing myself. My colleague and friend Mick Baccio set the bar pretty high last week, so I was planning to tell you all about myself, including: How I did my first real IR under the influence of The Cuckoo’s Egg while an undergraduate (and failed) My pre-bug bounty flirtation with vulnerability research,…

Cisco US

tg: rozbor tg: návod tg: názor tp: AI

· Cisco Talos · “Sorry, I can’t help with that”: How your guardrails might become the attacker’s best friend

1

Cisco Advance Notification for Publication of September 2, 2026, Security Advisories

On September 2, 2026, the Cisco Product Security Incident Response Team (PSIRT) will publish advisories to disclose security vulnerability information along with fixed software releases for the following Cisco products: Desk Phone 9800, 7800 and 8800, and 8875 Series Software IOS XR Software (security hardening release) Nexus 9000 Series Switches Silicon One Secure Email To fully remediate vulnerabilities to be disclosed on September 2, 2026, Cisco strongly recommends that customers upgrade to…

Cisco US

· Cisco PSIRT · Cisco Advance Notification for Publication of September 2, 2026, Security Advisories

1

SPOJENO PŘES CVE Multiples vulnérabilités dans Cisco IOS XE (25 août 2026)

De multiples vulnérabilités ont été découvertes dans Cisco IOS XE. Elles permettent à un attaquant de provoquer un contournement de la politique de sécurité et un problème de sécurité non spécifié par l'éditeur.

EPSS 0.00 CVE-2026-20267 CVE-2026-20268 CVE-2026-20269 CVE-2026-20270 CVE-2026-20271 CVE-2026-20272 CVE-2026-20273 Cisco FR US

· CERT-FR – avis · Multiples vulnérabilités dans Cisco IOS XE (25 août 2026) · Cisco PSIRT · Cisco IOS XE Software Security Hardening Release: August 2026

1

24th August – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 24th August, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Latvia’s Road Traffic Safety Directorate (CSDD) has confirmed a breach affecting payment records of more than 1.2 million people – roughly two-thirds of the country’s population – as well as 200,000 organizations. The stolen data included identification numbers, license plates, payment amounts, dates and addresses. Attackers reportedly exploited a…

KEV ✓ · ransomware EPSS 0.41 CVSS 10.0 CVE-2026-12569 CVE-2026-19478 CVE-2026-19489 CVE-2026-19490 Snowflake Siemens GitLab Cisco zdravotnictví výroba a průmysl energetika vodárenství IL

· Check Point Research · 24th August – Threat Intelligence Report

1

NCSC-2026-0323 [1.00] [M/H] Kwetsbaarheden verholpen in Cisco Secure Workload

Cisco heeft meerdere kwetsbaarheden verholpen in Cisco Secure Workload. De kwetsbaarheden betreffen onder andere improper neutralization of special elements (CWE-74), improper access control (CWE-284), improper authentication (CWE-287), improper input validation (CWE-20) en buffer management problemen (CWE-119). Deze kwetsbaarheden zijn intern ontdekt tijdens een uitgebreide security review door het engineering team van Cisco Secure Workload. Een aanvaller kan mogelijk misbruik maken van deze…

Cisco NL

· NCSC-NL · NCSC-2026-0323 [1.00] [M/H] Kwetsbaarheden verholpen in Cisco Secure Workload

4

Cisco security advisory (AV26-834)

Serial Number: AV26-834Date: August 20, 2026 As of August 19, 2026, Cisco is affected by vulnerabilities in the following products: BroadWorks Application Delivery Platform Prior to RI.2026.07 BroadWorks Application Server Prior to RI.2026.07 BroadWorks Profile Server Prior to RI.2026.07 BroadWorks Xtended Services Platform Prior to RI.2026.07 Cisco Crosswork Planning Prior to 7.2.1-SP Cisco Crosswork Data Gateway Prior to 7.2.1-SP Cisco Crosswork Network Controller Prior to 7.2.1-SP Cisco…

Cisco CA

· Cyber Centre Kanada · Cisco security advisory (AV26-834)

SPOJENO PŘES CVE Risolte vulnerabilità in prodotti Cisco

Cisco ha rilasciato aggiornamenti di sicurezza che risolvono molteplici vulnerabilità, tra cui 8 con gravità "critica" e 2 con gravità “alta”, riguardanti vari prodotti.

EPSS 0.01 CVE-2026-20030 CVE-2026-20231 CVE-2026-20315 CVE-2026-20317 CVE-2026-20318 CVE-2026-20319 CVE-2026-20320 CVE-2026-20357 CVE-2026-20358 CVE-2026-20359 Cisco IT FR

· CSIRT Itálie (ACN) · Risolte vulnerabilità in prodotti Cisco · CERT-FR – avis · Multiples vulnérabilités dans les produits Cisco (20 août 2026)

SPOJENO PŘES CVE Cisco Secure Workload Software Security Hardening Release: August 2026

Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 10.0, CVEs: CVE-2026-20231, CVE-2026-20315, CVE-2026-20317, CVE-2026-20318, CVE-2026-20319, Summary: These vulnerabilities affect Cisco Secure Workload Software Software as a Service (SaaS) and on-premises deployments, regardless of device configuration. These vulnerabilities were found during internal testing and are not known to be actively exploited.

EPSS 0.01 CVSS 10.0 CVE-2026-20231 CVE-2026-20315 CVE-2026-20317 CVE-2026-20318 CVE-2026-20319 Cisco FI US

· NCSC-FI · Cisco Secure Workload Software Security Hardening Release: August 2026 · Cisco PSIRT · Cisco Secure Workload Software Security Hardening Release: August 2026

SPOJENO PŘES CVE Cisco Crosswork Security Hardening Release: August 2026

Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 10.0, CVEs: CVE-2026-20030, CVE-2026-20357, CVE-2026-20358, CVE-2026-20359, Summary: These vulnerabilities affect the following Cisco Crosswork platforms, regardless of device configuration: Crosswork Data Gateway Crosswork Network Controller Crosswork Planning These vulnerabilities were found during internal testing and are not known to be actively exploited.

EPSS 0.01 CVSS 10.0 CVE-2026-20030 CVE-2026-20357 CVE-2026-20358 CVE-2026-20359 Cisco FI US

· NCSC-FI · Cisco Crosswork Security Hardening Release: August 2026 · Cisco PSIRT · Cisco Crosswork Security Hardening Release: August 2026

6

Cisco BroadWorks Out-of-Band Blind XML External Entity Injection Vulnerability

A vulnerability in the Open Client Interface (OCI) XML Parser of Cisco BroadWorks could allow an unauthenticated, remote attacker to read sensitive configuration information on an affected system. This vulnerability exists because XML entries are improperly parsed due to external entity resolution being allowed by default. An attacker could exploit this vulnerability by sending a crafted XML message to the Open Client Interface – Provisioning (OCI-P) service. A successful exploit could allow…

EPSS 0.00 CVE-2026-20320 Cisco telekomunikace US

· Cisco PSIRT · Cisco BroadWorks Out-of-Band Blind XML External Entity Injection Vulnerability

Cisco RoomOS Stack Overflow Vulnerability

A vulnerability in the USB driver of Cisco RoomOS could allow an unauthenticated, local attacker with physical access to the USB port on an affected device to execute arbitrary code with root privileges. This vulnerability is due to insufficient boundary checks for specific data that is provided through the USB driver. An attacker could exploit this vulnerability by connecting a malicious USB device to an affected device. A successful exploit could allow the attacker to cause a buffer overflow…

EPSS 0.00 CVE-2026-20302 Cisco US

· Cisco PSIRT · Cisco RoomOS Stack Overflow Vulnerability

Cisco Industrial Ethernet 1000 Series Switches Denial of Service Vulnerability

A vulnerability in the handling of management plane packets by Cisco Industrial Ethernet (IE) 1000 Series Switches could allow an unauthenticated, remote attacker to cause the device manager, SSH, or API to become inaccessible.This vulnerability is due to insufficient protection against management plane flooding attacks. An attacker could exploit this vulnerability by sending a high rate of ICMP, SSH, or HTTP traffic to an affected device. A successful exploit could allow the attacker to cause…

EPSS 0.00 CVE-2026-20177 Cisco US

· Cisco PSIRT · Cisco Industrial Ethernet 1000 Series Switches Denial of Service Vulnerability

Cisco Unified Intelligence Center SQL Injection Vulnerability

A vulnerability in the web-based management interface of Cisco Unified Intelligence Center could allow an authenticated, local attacker to perform a blind SQL injection attack against an affected device. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted request to the web-based management interface. A successful exploit could allow the attacker to read the contents of the internal database of an…

EPSS 0.00 CVE-2026-20327 Cisco US

· Cisco PSIRT · Cisco Unified Intelligence Center SQL Injection Vulnerability

Cisco Packaged Contact Center Enterprise and Cisco Unified Contact Center Enterprise Server-Side Request Forgery Vulnerability

A vulnerability in Cisco Packaged Contact Center Enterprise (Packaged CCE) and Cisco Unified Contact Center Enterprise (Unified CCE) could allow an authenticated, remote attacker to conduct server-side request forgery (SSRF) attacks through an affected device. This vulnerability is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to send…

EPSS 0.00 CVE-2026-20314 Cisco US

· Cisco PSIRT · Cisco Packaged Contact Center Enterprise and Cisco Unified Contact Center Enterprise Server-Side Request Forgery Vulnerability

Cisco Industrial Ethernet 1000 Series Switches Stored Cross-Site Scripting Vulnerability

A vulnerability in the web-based management interface of Cisco Industrial Ethernet (IE) 1000 Series Switches could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface. This vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of an affected system. An attacker could exploit this vulnerability by injecting malicious code into specific pages of the interface. A…

EPSS 0.00 CVE-2026-20232 Cisco US

· Cisco PSIRT · Cisco Industrial Ethernet 1000 Series Switches Stored Cross-Site Scripting Vulnerability

1

Cisco Advance Notification for Publication of August 19, 2026, Security Advisories

On August 19, 2026, the Cisco Product Security Incident Response Team (PSIRT) will publish advisories to disclose security vulnerability information along with fixed software releases for the following Cisco products: BroadWorks Crosswork Industrial Ethernet 1000 Series Switches Packaged Contact Center Enterprise and Unified Contact Center Enterprise RoomOS Secure Workload Unified Intelligence Center To fully remediate vulnerabilities to be disclosed on August 19, 2026, Cisco strongly…

Cisco US

· Cisco PSIRT · Cisco Advance Notification for Publication of August 19, 2026, Security Advisories

6

ClamAV Vulnerabilities Affecting Cisco Products: August 2026

Multiple vulnerabilities in ClamAV could allow a remote attacker to cause a denial of service (DoS) condition, interrupting scanning operations. For more information about these vulnerabilities, see the Details section of this advisory. For additional information on these vulnerabilities in ClamAV, see the ClamAV blog. Cisco has released software updates that address these vulnerabilities in affected Cisco platforms. There are no workarounds that address these vulnerabilities. Notes: The…

EPSS 0.01 CVE-2026-20337 CVE-2026-20338 CVE-2026-20339 CVE-2026-20345 CVE-2026-20346 CVE-2026-20347 CVE-2026-20348 Cisco US

· Cisco PSIRT · ClamAV Vulnerabilities Affecting Cisco Products: August 2026

SPOJENO PŘES CVE AL26-018 - Vulnerability affecting Cisco ASA and Secure Firewall Threat Defense Software Remote Access SSL VPN - CVE-2026-20349

Number: AL26-018Date: August 13, 2026 Audience This Alert is intended for IT professionals and managers. Purpose An Alert is used to raise awareness of a recently identified cyber threat that may impact cyber information assets, and to provide additional detection and mitigation advice to recipients. The Canadian Centre for Cyber Security ("Cyber Centre") is also available to provide additional assistance regarding the content of this Alert to recipients as requested. Details The Canadian…

KEV ✓ EPSS 0.02 CVE-2026-20349 Cisco veřejná správa CA RO IT FR US

· Cyber Centre Kanada · AL26-018 - Vulnerability affecting Cisco ASA and Secure Firewall Threat Defense Software Remote Access SSL VPN - CVE-2026-20349 · DNSC Rumunsko · ALERTĂ: Vulnerabilitate exploatată activ în Cisco · CSIRT Itálie (ACN) · Rilevato sfruttamento di vulnerabilità in prodotti Cisco · CERT-FR – avis · Vulnérabilité dans les produits Cisco (12 août 2026) · Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Denial of Service Vulnerability · CISA KEV · Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection Vulnerability (CVE-2026-20349)

ZDI-26-579: Cisco Identity Services Engine zipFiles Directory Traversal Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cisco Identity Services Engine. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.2. The following CVEs are assigned: CVE-2026-20181.

EPSS 0.09 CVSS 7.2 CVE-2026-20181 Cisco US

· Zero Day Initiative · ZDI-26-579: Cisco Identity Services Engine zipFiles Directory Traversal Remote Code Execution Vulnerability

ZDI-26-580: Cisco Identity Services Engine Missing Authentication for Critical Function Information Disclosure Vulnerability

The vulnerability allows remote attackers to disclose sensitive information on affected installations of Cisco Identity Services Engine. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.5. The following CVEs are assigned: CVE-2026-20190.

EPSS 0.01 CVSS 7.5 CVE-2026-20190 Cisco telekomunikace US

· Zero Day Initiative · ZDI-26-580: Cisco Identity Services Engine Missing Authentication for Critical Function Information Disclosure Vulnerability

ZDI-26-581: Cisco Identity Services Engine invokeScript Command Injection Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cisco Identity Services Engine. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.2. The following CVEs are assigned: CVE-2026-20147.

EPSS 0.10 CVSS 7.2 CVE-2026-20147 Cisco US

· Zero Day Initiative · ZDI-26-581: Cisco Identity Services Engine invokeScript Command Injection Remote Code Execution Vulnerability

ZDI-26-582: Cisco Identity Services Engine PatchUpdateListener Directory Traversal Information Disclosure Vulnerability

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Cisco Identity Services Engine. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 4.9. The following CVEs are assigned: CVE-2026-20148.

EPSS 0.07 CVSS 4.9 CVE-2026-20148 Cisco US

· Zero Day Initiative · ZDI-26-582: Cisco Identity Services Engine PatchUpdateListener Directory Traversal Information Disclosure Vulnerability

1

NCSC-2026-0295 [1.00] [M/H] Kwetsbaarheid verholpen in Cisco Secure Firewall ASA en FTD software

Cisco heeft een kwetsbaarheid verholpen in Cisco Secure Firewall ASA en FTD software. De kwetsbaarheid bevindt zich in de heap inspection binnen de Remote Access SSL VPN-service. Deze ontstaat door onvoldoende foutcontrole tijdens de verwerking van HTTP-verzoeken. Een niet-geauthenticeerde externe aanvaller kan speciaal opgemaakte HTTP-verzoeken versturen om de getroffen apparaten onverwacht te laten herstarten, wat leidt tot een Denial-of-Service. De kwetsbaarheid treft…

Cisco NL

· NCSC-NL · NCSC-2026-0295 [1.00] [M/H] Kwetsbaarheid verholpen in Cisco Secure Firewall ASA en FTD software

1

CISA Adds Three Known Exploited Vulnerabilities to Catalog

CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-20349 Cisco Secure Firewall Adaptive Security Appliance (ASA) and Firewall Threat Defense (FTD) Heap Inspection Vulnerability CVE-2026-68820 Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability CVE-2026-72898 Metabase SQL Injection Vulnerability These types of vulnerabilities are a frequent attack vector for malicious…

KEV ✓ EPSS 0.94 CVE-2026-20349 CVE-2026-68820 CVE-2026-72898 Cisco Microsoft Metabase veřejná správa US

· CISA Advisories · CISA Adds Three Known Exploited Vulnerabilities to Catalog

2

Cisco security advisory (AV26-794)

Serial Number: AV26-794Date: August 10, 2026 As of August 7, 2026, Cisco is affected by vulnerabilities in the following product: Secure Endpoint Connector for Linux Secure Endpoint Connector for Mac Secure Endpoint Connector for Windows Cisco Secure Endpoint Private Cloud Prior to 8.4.5.30483 The Cyber Centre encourages users and administrators to review the provided web link and apply any necessary updates as they become available. ClamAV Vulnerabilities Affecting Cisco Products: August 2026…

Cisco CA

· Cyber Centre Kanada · Cisco security advisory (AV26-794)

10th August – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 10th August, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES North Carolina Ports, the US authority operating the ports of Wilmington, Morehead City and others, has suffered a cyberattack that forced some operations onto manual processes. The authority claims it has contained the intrusion, but degraded systems caused delays while affected services were restored. Ryde, an electric scooter operator in…

EPSS 0.31 CVSS 10.0 CVE-2026-12537 CVE-2026-54316 CVE-2026-64638 Cloudflare Google Anthropic Cisco finance obchod obrana IL

· Check Point Research · 10th August – Threat Intelligence Report

1

Cisco Catalyst SD-WAN Manager Information Disclosure Vulnerability

A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to view sensitive information in clear text on an affected system. This vulnerability is due to insufficient access control enforcement for specific template types that are not included in the encryption allowlist. A low-privileged attacker could exploit this vulnerability by viewing logs on the local system or on a remote logging server. A successful exploit…

EPSS 0.00 CVE-2026-20294 Cisco US

· Cisco PSIRT · Cisco Catalyst SD-WAN Manager Information Disclosure Vulnerability

1

Cisco security advisory (AV26-785)

Serial number: AV26-785Date: August 6, 2026 As of August 5, 2026, Cisco is affected by vulnerabilities in the following products: Cisco Catalyst SD-WAN Release prior to 20.9.10 prior to 20.12.8.1 prior to 20.15.6 prior to 20.18.4 prior to 26.1.2 Cisco IOS XE Software Release prior to 17.9.10 prior to 17.12.8 prior to 17.15.6 prior to 17.18.4 and 17.18.4a prior to 26.1.2 Cisco Secure FMC Software Release prior to Cisco_Firepower_Mgmt_Center_Hotfix_GB-7.0.9.1-3.sh.REL.tar prior to Cisco_Secure_FW…

Cisco CA

· Cyber Centre Kanada · Cisco security advisory (AV26-785)

11

Cisco Advance Notification for Publication of August 5, 2026, Security Advisories

On August 5, 2026, the Cisco Product Security Incident Response Team (PSIRT) published the following advisories: Cisco Security Advisory CVE ID Security Impact Rating CVSS Base Score Cisco Catalyst SD-WAN Software Security Hardening Release: August 2026 CVE-2026-20303CVE-2026-20304CVE-2026-20310CVE-2026-20312CVE-2026-20313 Critical 9.9 Cisco IOS XE Software Security Hardening Release: August 2026 CVE-2026-20267CVE-2026-20268CVE-2026-20269CVE-2026-20270CVE-2026-20271CVE-2026-20272CVE-2026-20273…

EPSS 0.00 CVE-2026-20028 CVE-2026-20124 CVE-2026-20198 CVE-2026-20263 CVE-2026-20289 CVE-2026-20294 CVE-2026-20301 CVE-2026-20311 Cisco US

· Cisco PSIRT · Cisco Advance Notification for Publication of August 5, 2026, Security Advisories

Cisco IOS XE Software Web-Based Management Interface Denial of Service Vulnerability

A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote attacker with low privileges to perform a denial of service (DoS) attack against an affected device. This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted input to the web-based management interface of an affected device. A successful exploit could allow the attacker to cause the web-based management interface…

EPSS 0.00 CVE-2026-20308 Cisco US

· Cisco PSIRT · Cisco IOS XE Software Web-Based Management Interface Denial of Service Vulnerability

Cisco Catalyst SD-WAN Software Security Hardening Release: August 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. These vulnerabilities were found during internal testing and are not known to be actively exploited. To assist customers in patching and streamline the disclosure process, Cisco has grouped these…

EPSS 0.00 CVE-2026-20303 CVE-2026-20304 CVE-2026-20310 CVE-2026-20312 CVE-2026-20313 Cisco US

· Cisco PSIRT · Cisco Catalyst SD-WAN Software Security Hardening Release: August 2026

Cisco Terminal Services Agent Firewall Rules Bypass Vulnerability

A vulnerability in the network driver of Cisco Terminal Service (TS) Agent could allow an authenticated, remote attacker to bypass firewall rules that are associated with the account of the attacker. This vulnerability is due to an incorrect mapping of network connections to user accounts. An attacker with at least user-level credentials could exploit this vulnerability by sending crafted network traffic to an affected device. A successful exploit could allow the attacker to inherit the…

EPSS 0.00 CVE-2026-20028 Cisco US

· Cisco PSIRT · Cisco Terminal Services Agent Firewall Rules Bypass Vulnerability

Cisco Integrated Management Controller Argument Injection Vulnerabilities

Multiple vulnerabilities in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected system and elevate privileges to root. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities…

EPSS 0.06 CVE-2026-20200 CVE-2026-20288 Cisco US

· Cisco PSIRT · Cisco Integrated Management Controller Argument Injection Vulnerabilities

Cisco IOS Software and IOS XE Software Extensible Messaging Client Protocol Denial of Service Vulnerability

A vulnerability in the Extensible Messaging Client Protocol (XMCP), also referred to as the External Client protocol, of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of malformed XMCP packets. An attacker could exploit this vulnerability by sending a malformed XMCP packet to an affected device. A successful exploit could allow the…

EPSS 0.00 CVE-2026-20301 Cisco US

· Cisco PSIRT · Cisco IOS Software and IOS XE Software Extensible Messaging Client Protocol Denial of Service Vulnerability

Cisco IOS XE Software SNMP Denial of Service Vulnerability

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE Software could allow an authenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. This vulnerability is due to improper error handling when parsing SNMP requests. This vulnerability affects all versions of SNMP — Versions 1, 2c, and 3. An attacker could exploit this vulnerability by sending a malformed SNMP request to an affected device. A…

EPSS 0.00 CVE-2026-20124 Cisco US

· Cisco PSIRT · Cisco IOS XE Software SNMP Denial of Service Vulnerability

Cisco IOS XE Software Blocks Extensible Exchange Protocol Denial of Service Vulnerability

A vulnerability in the Blocks Extensible Exchange Protocol (BEEP) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling when parsing a specific BEEP SOAP request. An attacker could exploit this vulnerability by sending a specific BEEP SOAP request to an affected device. A successful exploit could allow the attacker to cause the device to reload…

EPSS 0.00 CVE-2026-20263 Cisco US

· Cisco PSIRT · Cisco IOS XE Software Blocks Extensible Exchange Protocol Denial of Service Vulnerability

Cisco RoomOS Logging Subsystem Information Disclosure Vulnerability

A vulnerability in the logging subsystem of Cisco RoomOS could allow an authenticated, local attacker with low privileges to access sensitive information. This vulnerability is due to the logging of sensitive information. An attacker could exploit this vulnerability by enabling a specific logging level and then collecting the system logs. A successful exploit could allow the attacker to view sensitive information like user login credentials. Cisco has released software updates that address this…

EPSS 0.00 CVE-2026-20289 Cisco US

· Cisco PSIRT · Cisco RoomOS Logging Subsystem Information Disclosure Vulnerability

Cisco Integrated Management Controller Cross-Site Scripting Vulnerability

A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability is due to insufficient validation of user input. An attacker could exploit this vulnerability by persuading a user of an affected interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the…

EPSS 0.00 CVE-2026-20198 Cisco US

· Cisco PSIRT · Cisco Integrated Management Controller Cross-Site Scripting Vulnerability

Cisco IOS XE Software Web-Based Management Interface Denial of Service Vulnerability

A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote attacker with low privileges to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient error handling in the web-based management interface. An attacker could exploit this vulnerability by authenticating with a malformed certificate. A successful exploit could allow the attacker to cause the affected device to reload, resulting…

EPSS 0.00 CVE-2026-20311 Cisco US

· Cisco PSIRT · Cisco IOS XE Software Web-Based Management Interface Denial of Service Vulnerability

2

[Webinar] Tales from the Frontlines: An exclusive briefing on Q2 incidents

Have you ever read the Talos IR Quarterly Trends report and wondered, “How did that phishing or ransomware campaign actually play out? When was Talos IR contacted, how did they contain it, and how did they remediate the environment?" You’re in luck. Next Tuesday, August 11, Cisco Talos Incident Responders will be hosting an exclusive, unrecorded 30-minute webinar to review the most high-impact incidents our customers faced in Q2 2026. This isn’t a rehashing of the report itself, but a candid…

Cisco US

tg: propagace tp: phishing tp: ransomware

· Cisco Talos · [Webinar] Tales from the Frontlines: An exclusive briefing on Q2 incidents

3rd August – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 27th July, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Minnesota IT Services has confirmed coordinated cyberattacks affecting more than 30 community water utilities across the state. The incidents briefly disrupted a treatment plant in Braham and affected industrial control systems. Officials reported that drinking water safety was not affected. While the attack was not officially attributed, federal…

KEV ✓ · ransomware EPSS 0.87 CVSS 9.8 CVE-2026-20316 CVE-2026-42897 CVE-2026-59309 CVE-2026-59310 CVE-2026-59726 CVE-2026-63077 CVE-2026-66066 Cisco Broadcom JetBrains Microsoft vodárenství finance zdravotnictví telekomunikace IL

tg: incident tg: zranitelnost tg: přehled tp: phishing tp: únik dat tp: AI tp: průmyslové systémy

· Check Point Research · 3rd August – Threat Intelligence Report

1

SPOJENO PŘES CVE Cisco Catalyst SD-WAN Controller, Catalyst SD-WAN Manager, and Catalyst SD-WAN Validator Authenticated Privilege Escalation Vulnerability

A vulnerability in the CLI of Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, and Cisco Catalyst SD-WAN Validator, formerly SD-WAN vBond, could allow an authenticated, local attacker to execute arbitrary commands as root by supplying a crafted file to the affected system. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by uploading a crafted file to the…

KEV ✓ EPSS 0.92 CVE-2026-20127 CVE-2026-20182 CVE-2026-20245 Cisco telekomunikace energetika doprava finance obchod zdravotnictví US

· Cisco PSIRT · Cisco Catalyst SD-WAN Controller, Catalyst SD-WAN Manager, and Catalyst SD-WAN Validator Authenticated Privilege Escalation Vulnerability · Mandiant / Google TI · Zero-Day Exploitation of Vulnerability (CVE-2026-20245) in Cisco Catalyst SD-WAN Manager

1

Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabilities

Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) guest portals could allow an authenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the interface. These vulnerabilities are due to insufficient validation of user-supplied input by the web-based management interface of an affected system. An attacker could exploit these vulnerabilities by injecting malicious code into specific pages of the interface. A…

EPSS 0.00 CVE-2025-20204 CVE-2025-20205 Cisco US

· Cisco PSIRT · Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabilities

3

SPOJENO PŘES CVE Cisco Advance Notification for Publication of July 15, 2026, Security Advisories

On July 15, 2026, the Cisco Product Security Incident Response Team (PSIRT) published the following advisories: Cisco Security Advisory CVE ID Security Impact Rating CVSS Base Score Cisco RoomOS Security Hardening Release: July 2026 CVE-2026-20150CVE-2026-20153CVE-2026-20156CVE-2026-20157CVE-2026-20158CVE-2026-20187 High 8.8 Cisco Identity Services Engine Path Traversal Vulnerability CVE-2026-20146 Medium 5.5 To fully remediate the vulnerabilities that were disclosed on July 15, 2026, Cisco…

EPSS 0.00 CVSS 5.5 CVE-2026-20146 Cisco US

· Cisco PSIRT · Cisco Advance Notification for Publication of July 15, 2026, Security Advisories · Zero Day Initiative · ZDI-26-421: Cisco Identity Services Engine validFileNameOrPath Directory Traversal Information Disclosure Vulnerability

Cisco RoomOS Security Hardening Release: July 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. These vulnerabilities were found during internal testing and are not known to be actively exploited. To assist customers in patching and to streamline the disclosure process, Cisco has grouped these issues by…

EPSS 0.00 CVE-2026-20150 CVE-2026-20153 CVE-2026-20156 CVE-2026-20157 CVE-2026-20158 CVE-2026-20187 Cisco US

· Cisco PSIRT · Cisco RoomOS Security Hardening Release: July 2026

Patchtisdag juli 2026 – samlad information om månadens säkerhetsuppdateringar

Flera leverantörer har släppt sina månatliga säkerhetsuppdateringar för juli. Nedan finns en sammanställning av de säkerhetsuppdateringar som Cisco, Microsoft, SAP, Ivanti, Fortinet och Adobe har publicerat inför och i samband med patchtisdagen. Följ länkarna för att komma till respektive leverantörs uppdateringar. [1, 2, 3, 4, 5, 6]

Cisco Microsoft SAP Ivanti SE

· CERT-SE · Patchtisdag juli 2026 – samlad information om månadens säkerhetsuppdateringar

2

Cisco Identity Services Engine Remote Code Execution and Information Disclosure Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a remote attacker to achieve remote code execution or conduct information disclosure attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at…

EPSS 0.09 CVE-2026-20181 CVE-2026-20190 Cisco US

· Cisco PSIRT · Cisco Identity Services Engine Remote Code Execution and Information Disclosure Vulnerabilities

SPOJENO PŘES CVE Cisco Catalyst Center Arbitrary File Read Vulnerability

A vulnerability in Cisco Catalyst Center could allow an unauthenticated, remote attacker to read arbitrary files from a restricted container. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to read arbitrary files from a restricted container of the affected device. Cisco has released software updates that address this…

EPSS 0.01 CVE-2026-20191 Cisco US

· Cisco PSIRT · Cisco Catalyst Center Arbitrary File Read Vulnerability

1

ClamAV Vulnerabilities Affecting Cisco Products: July 2026

Multiple vulnerabilities in ClamAV could allow a remote attacker to cause a denial of service (DoS) condition, interrupting scanning operations. For more information about these vulnerabilities, see the Details section of this advisory. For additional information on these vulnerabilities in ClamAV, see the ClamAV blog. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. Notes: The Security Impact Rating (SIR) for…

EPSS 0.01 CVE-2026-20213 CVE-2026-20214 CVE-2026-20215 CVE-2026-20216 CVE-2026-20217 CVE-2026-20243 CVE-2026-20244 Cisco US

· Cisco PSIRT · ClamAV Vulnerabilities Affecting Cisco Products: July 2026

2

Cisco Unified Communications Manager Server-Side Request Forgery Vulnerability

A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an unauthenticated, remote attacker to conduct server-side request forgery (SSRF) attacks through an affected device. This vulnerability is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could…

KEV ✓ EPSS 0.88 CVE-2026-20230 Cisco US

· Cisco PSIRT · Cisco Unified Communications Manager Server-Side Request Forgery Vulnerability

22nd June – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 22nd June, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Texas Parks and Wildlife Department has been affected by a third-party data breach involving its license system vendor. The incident exposed driver’s license information, passport numbers, emails, phone numbers, and residential addresses for 3,087,721 hunting and fishing license customers. Social Security numbers and payment data were not affected.…

KEV ✓ EPSS 0.96 CVE-2026-20245 CVE-2026-33017 CVE-2026-34908 CVE-2026-34909 CVE-2026-34910 CVE-2026-41947 CVE-2026-41948 CVE-2026-55255 Cisco Ubiquiti Dify Langflow veřejná správa zdravotnictví finance IL

· Check Point Research · 22nd June – Threat Intelligence Report

1

Cisco Finesse Remote File Inclusion Vulnerability

A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to load arbitrary files from remote locations into an active user session on an affected device, possibly leading to browser-based attacks. This vulnerability is due to insufficient validation of user-supplied input for HTTP requests that are sent to an affected device. An attacker who has knowledge of the address of the affected device could exploit this vulnerability by persuading a user to click a crafted link…

EPSS 0.00 CVE-2026-20175 Cisco US

· Cisco PSIRT · Cisco Finesse Remote File Inclusion Vulnerability

1

Cisco Packaged Contact Center Enterprise and Cisco Unified Contact Center Enterprise Cross-Site Scripting Vulnerabilities

Multiple vulnerabilities in the web-based management interface of Cisco Packaged Contact Center Enterprise (Packaged CCE) and Cisco Unified Contact Center Enterprise (Unified CCE) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. These vulnerabilities exist because the web-based management interface does not properly validate user-supplied input. An attacker could exploit these…

EPSS 0.00 CVE-2026-20055 CVE-2026-20109 Cisco US

· Cisco PSIRT · Cisco Packaged Contact Center Enterprise and Cisco Unified Contact Center Enterprise Cross-Site Scripting Vulnerabilities

3

Cisco Webex App Open Redirect Vulnerability

A vulnerability in the browser-based version of Cisco Webex App could have allowed an unauthenticated, remote attacker to redirect users to a malicious webpage. Cisco has addressed this vulnerability in the Cisco Webex App, and no customer action is needed. This vulnerability existed due to improper input validation of URL parameters in an HTTP request. Prior to this vulnerability being addressed, an attacker could have exploited this vulnerability by persuading a user to click a crafted URL. A…

EPSS 0.00 CVE-2026-20178 Cisco US

· Cisco PSIRT · Cisco Webex App Open Redirect Vulnerability

Cisco Crosswork Network Controller Server-Side Template Injection Vulnerability

A vulnerability in the web-based management interface of Cisco Crosswork Network Controller could allow an authenticated, remote attacker to execute arbitrary commands on an affected device. This vulnerability is due to insufficient input validation in the configuration template engine of the web-based management interface. An attacker could exploit this vulnerability by sending a crafted request to the affected device. A successful exploit could allow the attacker to execute arbitrary commands…

EPSS 0.00 CVE-2026-20220 Cisco US

· Cisco PSIRT · Cisco Crosswork Network Controller Server-Side Template Injection Vulnerability

Cisco Umbrella Virtual Appliance Privilege Escalation Vulnerability

A vulnerability in the vmadmin CLI of Cisco Umbrella Virtual Appliance could allow an authenticated, local attacker to elevate privileges on an affected device. This vulnerability is due to insufficient validation of user-supplied commands. An attacker with vmadmin privileges could exploit this vulnerability by using certain commands at the CLI. A successful exploit could allow the attacker to elevate privileges to root. Cisco has released software updates that address this vulnerability. There…

EPSS 0.00 CVE-2026-20246 Cisco US

· Cisco PSIRT · Cisco Umbrella Virtual Appliance Privilege Escalation Vulnerability