<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 02:39:29 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-00706</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-00706</link>
      <description>bdu:2026-00706</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-00706</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0076 — Une vulnérabilité a été découverte dans les produits Cisco. Elle permet à un attaquant de provoquer une exécution de co…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0076</link>
      <description>certfr-2026-avi-0076</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0076</guid>
    </item>
    <item>
      <title>cisco-sa-voice-rce-mORhqY4b — Cisco Unified Communications Products Remote Code Execution Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/cisco-sa-voice-rce-morhqy4b</link>
      <description>&lt;p&gt;A vulnerability in Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), Cisco Unified Communications Manager IM &amp;amp; Presence Service (Unified CM IM&amp;amp;P), Cisco Unity Connection, and Cisco Webex Calling Dedicated Instance could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device.&#13;
&#13;
This vulnerability is due to improper validation of user-supplied input in HTTP requests. An attacker could exploit this vulnerability by sending a sequence of crafted HTTP requests to the web-based management interface of an affected device. A successful exploit could allow the attacker to obtain user-level access to the underlying operating system and then elevate privileges to root.&#13;
&#13;
Note: Cisco has assigned this security advisory a Security Impact Rating (SIR) of Critical rather than High as the score indicates. The reason is that exploitation of this vulnerability could result in an attacker elevating privileges to root.&#13;
&#13;
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), Cisco Unified Communications Manager IM &amp;amp; Presence Service (Unified CM IM&amp;amp;P), Cisco Unity Connection, and Cisco Webex Calling Dedicated Instance could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device.&#13;
&#13;
This vulnerability is due to improper validation of user-supplied input in HTTP requests. An attacker could exploit this vulnerability by sending a sequence of crafted HTTP requests to the web-based management interface of an affected device. A successful exploit could allow the attacker to obtain user-level access to the underlying operating system and then elevate privileges to root.&#13;
&#13;
Note: Cisco has assigned this security advisory a Security Impact Rating (SIR) of Critical rather than High as the score indicates. The reason is that exploitation of this vulnerability could result in an attacker elevating privileges to root.&#13;
&#13;
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cisco-sa-voice-rce-morhqy4b</guid>
    </item>
    <item>
      <title>EUVD-2026-270930</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-270930</link>
      <description>EUVD-2026-270930</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-270930</guid>
    </item>
    <item>
      <title>fkie_cve-2026-20045</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-20045</link>
      <description>&lt;p&gt;A vulnerability in Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), Cisco Unified Communications Manager IM &amp;amp;amp; Presence Service (Unified CM IM&amp;amp;amp;P), Cisco Unity Connection, and Cisco Webex Calling Dedicated Instance could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device.&amp;amp;nbsp;&#13;
&#13;
This vulnerability is due to improper validation of user-supplied input in HTTP requests. An attacker could exploit this vulnerability by sending a sequence of crafted HTTP requests to the web-based management interface of an affected device. A successful exploit could allow the attacker to obtain user-level access to the underlying operating system and then elevate privileges to root.&amp;amp;nbsp;&#13;
Note: Cisco has assigned this security advisory a Security Impact Rating (SIR) of Critical rather than High as the score indicates. The reason is that exploitation of this vulnerability could result in an attacker elevating privileges to root.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), Cisco Unified Communications Manager IM &amp;amp;amp; Presence Service (Unified CM IM&amp;amp;amp;P), Cisco Unity Connection, and Cisco Webex Calling Dedicated Instance could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device.&amp;amp;nbsp;&#13;
&#13;
This vulnerability is due to improper validation of user-supplied input in HTTP requests. An attacker could exploit this vulnerability by sending a sequence of crafted HTTP requests to the web-based management interface of an affected device. A successful exploit could allow the attacker to obtain user-level access to the underlying operating system and then elevate privileges to root.&amp;amp;nbsp;&#13;
Note: Cisco has assigned this security advisory a Security Impact Rating (SIR) of Critical rather than High as the score indicates. The reason is that exploitation of this vulnerability could result in an attacker elevating privileges to root.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-20045</guid>
    </item>
    <item>
      <title>GHSA-h4w3-hxw6-99q7</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-h4w3-hxw6-99q7</link>
      <description>&lt;p&gt;A vulnerability in Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), Cisco Unified Communications Manager IM &amp;amp;amp; Presence Service (Unified CM IM&amp;amp;amp;P), Cisco Unity Connection, and Cisco Webex Calling Dedicated Instance could allow an unauthenticated, remote attacker&amp;amp;nbsp;to execute arbitrary commands on the underlying operating system of an affected device.&amp;amp;nbsp;&lt;/p&gt;
&lt;p&gt;This vulnerability is due to improper validation of user-supplied input in HTTP requests. An attacker could exploit this vulnerability by sending a sequence of crafted HTTP requests to the web-based management interface of an affected device. A successful exploit could allow the attacker to obtain user-level access to the underlying operating system and then elevate privileges to root.
Note: Cisco has assigned this security advisory a Security Impact Rating (SIR) of Critical rather than High as the score indicates. The reason is that exploitation of this vulnerability could result in an attacker elevating privileges to root.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), Cisco Unified Communications Manager IM &amp;amp;amp; Presence Service (Unified CM IM&amp;amp;amp;P), Cisco Unity Connection, and Cisco Webex Calling Dedicated Instance could allow an unauthenticated, remote attacker&amp;amp;nbsp;to execute arbitrary commands on the underlying operating system of an affected device.&amp;amp;nbsp;&lt;/p&gt;
&lt;p&gt;This vulnerability is due to improper validation of user-supplied input in HTTP requests. An attacker could exploit this vulnerability by sending a sequence of crafted HTTP requests to the web-based management interface of an affected device. A successful exploit could allow the attacker to obtain user-level access to the underlying operating system and then elevate privileges to root.
Note: Cisco has assigned this security advisory a Security Impact Rating (SIR) of Critical rather than High as the score indicates. The reason is that exploitation of this vulnerability could result in an attacker elevating privileges to root.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-h4w3-hxw6-99q7</guid>
    </item>
    <item>
      <title>NCSC-2026-0036 — Kwetsbaarheden verholpen in Cisco Unified Communications producten</title>
      <link>https://cve.radiocsirt.org/vuln/ncsc-2026-0036</link>
      <description>NCSC-2026-0036</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ncsc-2026-0036</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0192 — Cisco Unified Communications Manager, Unified Communications Manager IM &amp; Presence Service und Unity Connection: Schwac…</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0192</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Cisco Unified Communications Manager (CUCM), Cisco Unified Communications Manager IM &amp;amp; Presence Service und Cisco Unity Connection ausnutzen, um beliebigen Programmcode auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Cisco Unified Communications Manager (CUCM), Cisco Unified Communications Manager IM &amp;amp; Presence Service und Cisco Unity Connection ausnutzen, um beliebigen Programmcode auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0192</guid>
    </item>
  </channel>
</rss>
