logo

Critical Cisco Flaw Lets Hackers Remotely Take Over Unified Comms Systems

ID: aa80c4ba-183e-5818-a917-772867b6c607

STIX ID: report--aa80c4ba-183e-5818-a917-772867b6c607

Feed Name: The Hacker News

Threat Score
80/100

Date Published: 2024-01-26

Date Updated: 2026-04-24

Author: [email protected] (The Hacker News)

...
...

Cisco disclosed and patched a critical remote code execution vulnerability (CVE-2024-20253, CVSS 9.9) in multiple Unified Communications and Contact Center Solutions products that could allow an unauthenticated attacker to send specially crafted messages to a listening port, execute arbitrary commands as the web services user, and potentially gain root access; Cisco has released fixes and recommends using access control lists to limit exposure until patches are applied.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.