Skip to content
COOEY

FAIL › dossier

Unified Communications Manager

PRODUCT

· dossier confidence 50%

Cisco Unified Communications Manager has confirmed critical vulnerabilities including RCE and SSRF in 2026, posing significant security risks for defense-industrial-base environments.

PROFILE
CategorySoftware ProductWhat they doUnified Communications Manager is a Cisco product providing unified communications services.
SECURITY POSTURE

High-risk product with confirmed critical RCE and SSRF vulnerabilities in 2026.

Notable failures
  • CVE-2026-20045: High severity RCE in Cisco UC products
  • CVE-2026-20230: High severity SSRF allowing OS file write and root escalation
Patterns: Remote code execution vulnerabilities in Cisco UC products
FAILURE HISTORY · 3
DATEEVENTSEVSUMMARY
2026-01-21 CVE-2026-20045 high Cisco UC products allow remote code execution.
2026-06-25 CVE-2026-20230 high Cisco Unified CM SSRF vulnerability allows unauthenticated remote attackers to write files to the OS and escalate to root.
2021-12-10 CVE-2021-44228 critical CVE-2021-44228: Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12
Open questions: Patch availability status for CVE-2026-20045 and CVE-2026-20230 · Impact on CMMC compliance for defense-industrial-base customers
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-01 03:45:35.114210+00:00