In Less Than 24 Hours, Attackers Weaponize Cisco CUCM Flaw
Reported exploitedCisco Unified Communications ManagerWebDialerOur summary
In under 24 hours of proof-of-concept release, attackers started actively exploiting a critical Cisco Unified Communications Manager (CUCM) vulnerability to obtain root access. The issue, tracked as CVE-2026-20230, is an unauthenticated SSRF input validation flaw affecting Cisco Unified CM and Unified CM SME deployments when the WebDialer service is enabled. This matters because public exploit chains have been observed in the wild, enabling attackers to deploy web shells and escalate privileges on exposed systems; Cisco issued fixes on June 3 and organizations should patch or disable WebDialer if not required.
Dark Reading publishes this story on its own site; we link to it rather than reprint it.
Worried this affects your company?
Discuss a security assessment of your internet-facing systems. Scope agreed before testing.