FAIL › dossier
Unified Communications Manager
PRODUCT· dossier confidence 50%
Cisco Unified Communications Manager has confirmed critical vulnerabilities including RCE and SSRF in 2026, posing significant security risks for defense-industrial-base environments.
PROFILE
CategorySoftware ProductWhat they doUnified Communications Manager is a Cisco product providing unified communications services.
SECURITY POSTURE
High-risk product with confirmed critical RCE and SSRF vulnerabilities in 2026.
Notable failures
- CVE-2026-20045: High severity RCE in Cisco UC products
- CVE-2026-20230: High severity SSRF allowing OS file write and root escalation
Patterns: Remote code execution vulnerabilities in Cisco UC products
FAILURE HISTORY · 3
| DATE | EVENT | SEV | SUMMARY |
|---|---|---|---|
| 2026-01-21 | CVE-2026-20045 | high | Cisco UC products allow remote code execution. |
| 2026-06-25 | CVE-2026-20230 | high | Cisco Unified CM SSRF vulnerability allows unauthenticated remote attackers to write files to the OS and escalate to root. |
| 2021-12-10 | CVE-2021-44228 | critical | CVE-2021-44228: Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12 |
Open questions: Patch availability status for CVE-2026-20045 and CVE-2026-20230 · Impact on CMMC compliance for defense-industrial-base customers
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-01 03:45:35.114210+00:00