Cisco Unified CM — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
7
occurrences
First Seen
January 22, 2026
Last Seen
June 24, 2026

Cisco Unified CM is a technology platform tracked across 5 threat clusters and 7 intelligence report mentions on ThreatCluster. First observed January 22, 2026; most recent activity June 24, 2026.

Overview

Cisco Unified Communications Manager (Unified CM) is Cisco's on-premises call-processing platform that handles enterprise VoIP/video communications, call routing, and associated UC services across Cisco devices and endpoints. A zero-day remote code execution vulnerability in this platform is being actively exploited, making it a critical cybersecurity risk and prompting US CISA warnings about the threat and necessary mitigations.

Related Threat Clusters

Recent Intelligence Reports

  • Cisco Unified CM CVE-2026-20230: Webshell Drops Confirmed, Patch Alone Won't Evict Attackers — Techtimes · June 24, 2026
  • Cisco Unified CM SSRF Flaw CVE-2026-20230: Public Exploit Code Opens Path to Root — Techtimes · June 4, 2026
  • Cisco warns of critical Unified CM flaw with PoC exploit code — Bleepingcomputer · June 4, 2026
  • Cisco Unified CM Remote Code Execution Vulnerability (CVE-2026-20045) — Securityboulevard · January 28, 2026
  • 2024 VMware Flaw Now in Attackers' Crosshairs — Securityweek · January 26, 2026
  • Cisco Unified CM Zero-Day RCE Under Attack, CISA Issues Warning — Gbhackers · January 22, 2026
  • CISA Warns of Actively Exploited Cisco Unified CM Zero — Cyberpress · January 22, 2026

CVSS v3.1 Breakdown