Cisco Fixes Critical Vulnerability in Meeting Management
ID: 9c565015-a156-5a32-9710-469526b8e4df
STIX ID: report--9c565015-a156-5a32-9710-469526b8e4df
Feed Name: Infosecurity Magazine (News)
Threat Score
Cisco disclosed CVE-2025-20156, a critical (CVSS 9.9) privilege escalation vulnerability in the Cisco Meeting Management REST API that could enable remote attackers to obtain administrator privileges on affected instances up to version 3.9; Cisco released version 3.9.1 as a fix and advised customers to update, noting no known active exploitation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
