logo

Warning: Hardcoded credentials in Cisco Unified Communications Manager, Patch Immediately!

ID: 3ecf7be5-373b-520d-b121-5b32603bf74e

STIX ID: report--3ecf7be5-373b-520d-b121-5b32603bf74e

Feed Name: Centre for Cybersecurity Belgium Advisories Feed

Threat Score
95/100

Date Published: 2025-07-03

Date Updated: 2026-07-24

...
...

A critical vulnerability (CVE-2025-20309, CVSS 10) in Cisco Unified Communications Manager and Unified CM SME allows unauthenticated attackers to obtain root via hard-coded, non-removable SSH credentials; organizations are urged to apply patches immediately, review logs for root SSH access, and strengthen monitoring and detection.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.