Cisco Patches Critical Zero-Day in Unified Communications and Webex Calling

Cisco Patches Critical Zero-Day in Unified Communications and Webex Calling

First seen 23 Jan 2026, 22:10 UTC Securityaffairs.CoTechworm 90.3

Article Content

Browse articles
ThreatCluster

Cisco has addressed a critical zero-day remote code execution vulnerability (CVE-2026-20045) in its Unified Communications and Webex Calling platforms. This flaw, which has a CVSS score of 8.2, is actively exploited by unauthenticated remote attackers to execute arbitrary commands. Users of these services are advised to apply the patch promptly.