<?xml version="1.0" encoding="utf-8" ?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
  <!-- I2R 9899 -->
  
    
    <title>Cisco Security Advisory</title>
    
  
   
   
    
    
    
    <link>http://sec.cloudapps.cisco.com/security/center/psirtrss20/CiscoSecurityAdvisory.xml</link>
    
    <description>
    	
    </description>
    <language>en-us</language>
    <copyright>
         1992-2010 Cisco Systems, Inc. All rights reserved.
    </copyright>
    <category>Cisco Security Advisory</category> 
    <generator>
    	Cisco Systems, Inc.
    </generator>
    <atom:link href="http://sec.cloudapps.cisco.com/security/center/psirtrss20/CiscoSecurityAdvisory.xml" rel="self" type="application/rss+xml" ></atom:link>
    <ttl>15</ttl>

    
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Catalyst SD-WAN Controller, Catalyst SD-WAN Manager, and Catalyst SD-WAN Validator Authenticated Privilege Escalation Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-privesc-4uxFrdzx?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Controller,%20Catalyst%20SD-WAN%20Manager,%20and%20Catalyst%20SD-WAN%20Validator%20Authenticated%20Privilege%20Escalation%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the CLI of Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, and Cisco Catalyst SD-WAN Validator, formerly SD-WAN vBond, could allow an authenticated, local attacker to execute arbitrary commands as &lt;em&gt;root&lt;/em&gt; by supplying a crafted file to the affected system.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by uploading a crafted file to the affected system. A successful exploit could allow the attacker to perform command injection attacks on an affected system and elevate their privileges as the &lt;em&gt;root&lt;/em&gt; user.&lt;/p&gt;
&lt;p&gt;To exploit this vulnerability, the attacker must have &lt;em&gt;netadmin&lt;/em&gt; privileges on the affected system. This would require valid credentials or exploitation of &lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa2-v69WY2SW&#034; target=&#034;_blank&#034; rel=&#034;noopener&#034;&gt;CVE-2026-20182&lt;/a&gt; or &lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa-EHchtZk&#034; target=&#034;_blank&#034; rel=&#034;noopener&#034;&gt;CVE-2026-20127&lt;/a&gt;. Cisco is not aware of successful exploitation by other methods. Cisco has observed limited cases where the exploitation of this bug resulted in a configuration change pushed to edge devices.&lt;/p&gt;
&lt;p&gt;Cisco recommends that customers upgrade to the fixed software that is documented in the &lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa2-v69WY2SW&#034; target=&#034;_blank&#034; rel=&#034;noopener&#034;&gt;Catalyst SD-WAN Security Advisory&lt;/a&gt; that was published on May 14, 2026, and verify the configuration of the edge devices.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Important: &lt;/strong&gt;To preserve possible indicators of compromise, customers should issue the &lt;a href=&#034;https://www.cisco.com/c/en/us/support/docs/routers/sd-wan/225842-remediate-catalyst-sd-wan-security.html&#034; target=&#034;_blank&#034; rel=&#034;noopener&#034;&gt;&lt;strong&gt;request admin-tech&lt;/strong&gt;&lt;/a&gt; command from each of the control components in the SD-WAN deployment before upgrading. After the &lt;em&gt;admin-tech&lt;/em&gt; file has been collected, software should be upgraded at the earliest opportunity.&lt;/p&gt;
&lt;p&gt;Before upgrading an SD-WAN deployment to a fixed release, retain relevant logs. After upgrading, verify that the system has not been compromised by checking the logs for the indicators of compromise as documented in this advisory. If the logs show indicators of compromise and the system is confirmed to be compromised, applying the software update alone will not resolve the vulnerability. In such cases, follow the specific remediation steps that will be provided by the Cisco Technical Assistance Center (TAC) to help secure the system.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Live Protect Shield&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;Cisco has released a Live Protect shield for CVE-2026-20245 to provide temporary security coverage to allow time for software upgrade planning, including preserving any information that customers may require for governance or compliance purposes.&lt;/p&gt;
&lt;p&gt;This shield offers only temporary partial protection. The only way to remediate this vulnerability is to upgrade to the first fixed software release, as noted in the &lt;a href=&#034;#fs&#034; rel=&#034;nofollow&#034;&gt;Fixed Releases &lt;/a&gt;section of this advisory. Cisco strongly recommends prioritizing system upgrades and scheduling them as soon as possible to ensure remediation.&lt;/p&gt;
&lt;p&gt;Before deploying the shield, read the following information:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Before deploying this shield, set up disaster recovery operations, which have been tested to continue to operate. The new SD-WAN Disaster Recovery operations will not succeed after deployment of this shield. For more information, see &lt;a href=&#034;https://www.cisco.com/c/en/us/td/docs/routers
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  High
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20245
		    
         </description>
          
		  <pubDate>2026-07-15 22:09:28.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-privesc-4uxFrdzx</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Advance Notification for Publication of July 15, 2026, Security Advisories</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-notice-ILh3ZrP5?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Advance%20Notification%20for%20Publication%20of%20July%2015,%202026,%20Security%20Advisories%26vs_k=1</link>
          
          <description>
			&lt;p&gt;On July 15, 2026, the Cisco Product Security Incident Response Team (PSIRT) published the following advisories:&lt;/p&gt;
&lt;table width=&#034;100%&#034;&gt;&lt;colgroup&gt;&lt;col style=&#034;width: 35%;&#034;&gt;&lt;col style=&#034;width: 25%;&#034;&gt;&lt;col style=&#034;width: 20%;&#034;&gt;&lt;col style=&#034;width: 20%;&#034;&gt;&lt;/colgroup&gt;
&lt;thead&gt;
&lt;tr&gt;
&lt;th style=&#034;background-color: #e8ebf1; color: #58585b;&#034; align=&#034;left&#034; valign=&#034;top&#034;&gt;Cisco Security Advisory&lt;/th&gt;
&lt;th style=&#034;background-color: #e8ebf1; color: #58585b;&#034; align=&#034;left&#034; valign=&#034;top&#034;&gt;CVE ID&lt;/th&gt;
&lt;th style=&#034;background-color: #e8ebf1; color: #58585b;&#034; align=&#034;left&#034; valign=&#034;top&#034;&gt;Security Impact Rating&lt;/th&gt;
&lt;th style=&#034;background-color: #e8ebf1; color: #58585b;&#034; align=&#034;left&#034; valign=&#034;top&#034;&gt;CVSS Base Score&lt;/th&gt;
&lt;/tr&gt;
&lt;/thead&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-roomos-AqNMbEq&#034;&gt;Cisco RoomOS Security Hardening Release: July 2026&lt;/a&gt;&lt;/td&gt;
&lt;td&gt;CVE-2026-20150&lt;br&gt;CVE-2026-20153&lt;br&gt;CVE-2026-20156&lt;br&gt;CVE-2026-20157&lt;br&gt;CVE-2026-20158&lt;br&gt;CVE-2026-20187&lt;/td&gt;
&lt;td&gt;High&lt;/td&gt;
&lt;td&gt;8.8&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-traversal-xNt7wb2Y&#034;&gt;Cisco Identity Services Engine Path Traversal Vulnerability&lt;/a&gt;&lt;/td&gt;
&lt;td&gt;CVE-2026-20146&lt;/td&gt;
&lt;td&gt;Medium&lt;/td&gt;
&lt;td&gt;5.5&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p&gt;To fully remediate the vulnerabilities that were disclosed on July 15, 2026, Cisco strongly recommends that customers upgrade to the fixed software that is indicated in the advisories.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;For more information about changes in Cisco PSIRT vulnerability disclosure, see &lt;a href=&#034;https://blogs.cisco.com/security/strengthening-the-foundation-a-predictable-customer-focused-response-to-ai-accelerated-vulnerability-discovery&#034;&gt;Strengthening the Foundation: A Predictable, Customer-Focused Response to AI-Accelerated Vulnerability Discovery&lt;/a&gt;.&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Informational
		    
		    
         </description>
          
		  <pubDate>2026-07-15 16:01:10.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-notice-ILh3ZrP5</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco RoomOS Security Hardening Release: July 2026</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-roomos-AqNMbEq?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20RoomOS%20Security%20Hardening%20Release:%20July%202026%26vs_k=1</link>
          
          <description>
			&lt;p&gt;As part of Cisco&#039;s ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. &amp;nbsp;&lt;/p&gt;
&lt;p&gt;These vulnerabilities were found during internal testing and are not known to be actively exploited. To assist customers in patching and to streamline the disclosure process, Cisco has grouped these issues by their underlying vulnerability class &amp;mdash; Common Weakness Enumeration (CWE) &amp;mdash; and assigned a single Common Vulnerabilities and Exposures Identifier (CVE ID) to each CWE grouping.&lt;/p&gt;
&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-roomos-AqNMbEq&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-roomos-AqNMbEq&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  High
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20150,CVE-2026-20153,CVE-2026-20156,CVE-2026-20157,CVE-2026-20158,CVE-2026-20187
		    
         </description>
          
		  <pubDate>2026-07-15 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-roomos-AqNMbEq</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Identity Services Engine Path Traversal Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-traversal-xNt7wb2Y?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20Path%20Traversal%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to perform path traversal attacks on the underlying operating system to either read or delete arbitrary files. To exploit this vulnerability, the attacker must have valid administrative credentials.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;This vulnerability is due to improper validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected system. A successful exploit could allow the attacker to access sensitive files or delete arbitrary files on the affected system.&lt;/p&gt;

&lt;p&gt;Cisco plans to release software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-traversal-xNt7wb2Y&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-traversal-xNt7wb2Y&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20146
		    
         </description>
          
		  <pubDate>2026-07-15 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-traversal-xNt7wb2Y</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Identity Services Engine Remote Code Execution and Information Disclosure Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multi-G5WP8vv?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20Remote%20Code%20Execution%20and%20Information%20Disclosure%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			&lt;p&gt;Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a remote attacker to achieve remote code execution or conduct information disclosure attacks on an affected device.&lt;/p&gt;
&lt;p&gt;For more information about these vulnerabilities, see the&amp;nbsp;&lt;a href=&#034;#details&#034;&gt;Details&lt;/a&gt; section of this advisory.&lt;/p&gt;
&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multi-G5WP8vv&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multi-G5WP8vv&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Critical
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20181,CVE-2026-20190
		    
         </description>
          
		  <pubDate>2026-07-06 19:20:30.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multi-G5WP8vv</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Catalyst Center Arbitrary File Read Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-catc-file-read-wLH2vf8X?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20Center%20Arbitrary%20File%20Read%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in Cisco Catalyst Center could allow an unauthenticated, remote attacker to read arbitrary files from a restricted container.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to read arbitrary files from a restricted container of the affected device.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-catc-file-read-wLH2vf8X&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-catc-file-read-wLH2vf8X&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  High
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20191
		    
         </description>
          
		  <pubDate>2026-07-06 12:00:33.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-catc-file-read-wLH2vf8X</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>ClamAV Vulnerabilities Affecting Cisco Products: July 2026</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-clamav-88cFYyxR?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=ClamAV%20Vulnerabilities%20Affecting%20Cisco%20Products:%20July%202026%26vs_k=1</link>
          
          <description>
			&lt;p&gt;Multiple vulnerabilities in ClamAV could allow a remote attacker to cause a denial of service (DoS) condition, interrupting scanning operations.&lt;/p&gt;
&lt;p&gt;For more information about these vulnerabilities, see the &lt;a href=&#034;#details&#034;&gt;Details&lt;/a&gt; section of this advisory.&lt;/p&gt;
&lt;p&gt;For additional information on these vulnerabilities in ClamAV, see &lt;a href=&#034;https://blog.clamav.net/2026/07/clamav-153-and-145-security-patch.html&#034;&gt;the ClamAV blog&lt;/a&gt;.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Notes:&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;The Security Impact Rating (SIR) for these vulnerabilities is High for Windows-based platforms only because those platforms run the ClamAV scanning process in a privileged security context. The platforms that are highly impacted include Cisco Secure Endpoint Connector for Windows.&lt;/li&gt;
&lt;li&gt;The SIR for these vulnerabilities is Medium on other platforms, including Linux and Mac platforms, because those platforms run the ClamAV scanning process in a lower-privileged security context. The affected platforms include Secure Endpoint Connector for Linux and Mac.&lt;/li&gt;
&lt;li&gt;Cisco Secure Endpoint Private Cloud itself is not impacted by these vulnerabilities. However, the Cisco Secure Endpoint Connector software that is distributed from the device is impacted.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-clamav-88cFYyxR&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-clamav-88cFYyxR&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  High
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20213,CVE-2026-20214,CVE-2026-20215,CVE-2026-20216,CVE-2026-20217,CVE-2026-20243,CVE-2026-20244
		    
         </description>
          
		  <pubDate>2026-07-02 20:52:13.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-clamav-88cFYyxR</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Advance Notification for Publication of July 1, 2026, Security Advisories</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-notice-vwL7b0S7?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Advance%20Notification%20for%20Publication%20of%20July%201,%202026,%20Security%20Advisories%26vs_k=1</link>
          
          <description>
			&lt;p&gt;On July 1, 2026, the Cisco Product Security Incident Response Team (PSIRT) published the following advisories:&lt;/p&gt;
&lt;table width=&#034;100%&#034;&gt;&lt;colgroup&gt;&lt;col style=&#034;width: 35%;&#034;&gt;&lt;col style=&#034;width: 25%;&#034;&gt;&lt;col style=&#034;width: 20%;&#034;&gt;&lt;col style=&#034;width: 20%;&#034;&gt;&lt;/colgroup&gt;
&lt;thead&gt;
&lt;tr&gt;
&lt;th style=&#034;background-color: #e8ebf1; color: #58585b;&#034; align=&#034;left&#034; valign=&#034;top&#034;&gt;Cisco Security Advisory&lt;/th&gt;
&lt;th style=&#034;background-color: #e8ebf1; color: #58585b;&#034; align=&#034;left&#034; valign=&#034;top&#034;&gt;CVE-ID&lt;/th&gt;
&lt;th style=&#034;background-color: #e8ebf1; color: #58585b;&#034; align=&#034;left&#034; valign=&#034;top&#034;&gt;Security Impact Rating&lt;/th&gt;
&lt;th style=&#034;background-color: #e8ebf1; color: #58585b;&#034; align=&#034;left&#034; valign=&#034;top&#034;&gt;CVSS Base Score&lt;/th&gt;
&lt;/tr&gt;
&lt;/thead&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-catc-file-read-wLH2vf8X&#034;&gt;Cisco Catalyst Center Arbitrary File Read Vulnerability&lt;/a&gt;&lt;/td&gt;
&lt;td&gt;CVE-2026-20191&lt;/td&gt;
&lt;td&gt;High&lt;/td&gt;
&lt;td&gt;7.5&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-clamav-88cFYyxR&#034;&gt;ClamAV Vulnerabilities Affecting Cisco Products: July 2026&lt;/a&gt;&lt;/td&gt;
&lt;td&gt;CVE-2026-20216&lt;br&gt;CVE-2026-20213&lt;br&gt;CVE-2026-20214&lt;br&gt;CVE-2026-20215&lt;br&gt;CVE-2026-20217&lt;br&gt;CVE-2026-20243&lt;br&gt;CVE-2026-20244&lt;/td&gt;
&lt;td&gt;High&lt;/td&gt;
&lt;td&gt;7.5&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p&gt;To fully remediate the vulnerabilities that were disclosed on July 1, 2026, Cisco strongly recommends that customers upgrade to the fixed software that is indicated in the advisories.&lt;/p&gt;
&lt;p&gt;For more information about changes in Cisco PSIRT vulnerability disclosure, see&amp;nbsp;&lt;a href=&#034;https://blogs.cisco.com/security/strengthening-the-foundation-a-predictable-customer-focused-response-to-ai-accelerated-vulnerability-discovery&#034;&gt;Strengthening the Foundation: A Predictable, Customer-Focused Response to AI-Accelerated Vulnerability Discovery&lt;/a&gt;.&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Informational
		    
		    
         </description>
          
		  <pubDate>2026-07-01 16:01:07.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-notice-vwL7b0S7</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Unified Communications Manager Server-Side Request Forgery Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cucm-ssrf-cXPnHcW?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Unified%20Communications%20Manager%20Server-Side%20Request%20Forgery%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an unauthenticated, remote attacker to conduct server-side request forgery (SSRF) attacks through an affected device.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to write files to the underlying operating system that could be used later to elevate to &lt;em&gt;root&lt;/em&gt;.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Note:&lt;/strong&gt; Cisco has assigned this security advisory a Security Impact Rating (SIR) of Critical rather than High as the score indicates. The reason is that exploitation of this vulnerability could result in an attacker elevating privileges to &lt;em&gt;root&lt;/em&gt;.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Note:&lt;/strong&gt; To exploit this vulnerability, the WebDialer service must be enabled. WebDialer is disabled by default.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cucm-ssrf-cXPnHcW&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cucm-ssrf-cXPnHcW&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Critical
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20230
		    
         </description>
          
		  <pubDate>2026-07-01 15:10:08.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cucm-ssrf-cXPnHcW</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Finesse Remote File Inclusion Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-finesse-rfi-gwpkdc89?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Finesse%20Remote%20File%20Inclusion%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to load arbitrary files from remote locations into an active user session on an affected device, possibly leading to browser-based attacks.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to insufficient validation of user-supplied input for HTTP requests that are sent to an affected device. An attacker who has knowledge of the address of the affected device could exploit this vulnerability by persuading a user to click a crafted link that contains the affected device address. A successful exploit could allow the attacker to conduct browser-based attacks and execute arbitrary script code in the context of the affected interface or access sensitive information on the affected device.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-finesse-rfi-gwpkdc89&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-finesse-rfi-gwpkdc89&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20175
		    
         </description>
          
		  <pubDate>2026-06-25 14:31:09.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-finesse-rfi-gwpkdc89</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Packaged Contact Center Enterprise and Cisco Unified Contact Center Enterprise Cross-Site Scripting Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucce-pcce-xss-2JVyg3uD?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Packaged%20Contact%20Center%20Enterprise%20and%20Cisco%20Unified%20Contact%20Center%20Enterprise%20Cross-Site%20Scripting%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			
&lt;p style=&#034;margin-bottom: 15px;&#034;&gt;Multiple vulnerabilities in the web-based management interface of Cisco Packaged Contact Center Enterprise (Packaged CCE) and Cisco Unified Contact Center Enterprise (Unified CCE) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device.&amp;nbsp;&lt;/p&gt;
&lt;p style=&#034;margin-bottom: 15px;&#034;&gt;These vulnerabilities exist because the web-based management interface does not properly validate user-supplied input. An attacker could exploit these vulnerabilities by injecting malicious code into specific pages of the interface. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information. To exploit these vulnerabilities, the attacker must have valid administrative credentials.&lt;/p&gt;

&lt;p style=&#034;margin-bottom: 15px;&#034;&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p style=&#034;margin-bottom: 15px;&#034;&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucce-pcce-xss-2JVyg3uD&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucce-pcce-xss-2JVyg3uD&lt;/a&gt;&lt;/p&gt;


			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20055,CVE-2026-20109
		    
         </description>
          
		  <pubDate>2026-06-22 15:04:09.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucce-pcce-xss-2JVyg3uD</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Umbrella Virtual Appliance Privilege Escalation Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-umbrella-priv-esc-F4wJB7AU?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Umbrella%20Virtual%20Appliance%20Privilege%20Escalation%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the &lt;em&gt;vmadmin&lt;/em&gt; CLI of Cisco Umbrella Virtual Appliance could allow an authenticated, local attacker to elevate privileges on an affected device.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to insufficient validation of user-supplied commands. An attacker with &lt;em&gt;vmadmin &lt;/em&gt;privileges could exploit this vulnerability by using certain commands at the CLI. A successful exploit could allow the attacker to elevate privileges to &lt;em&gt;root.&lt;/em&gt;&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-umbrella-priv-esc-F4wJB7AU&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-umbrella-priv-esc-F4wJB7AU&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20246
		    
         </description>
          
		  <pubDate>2026-06-17 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-umbrella-priv-esc-F4wJB7AU</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Crosswork Network Controller Server-Side Template Injection Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cnc-inj-QNMeEmxk?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Crosswork%20Network%20Controller%20Server-Side%20Template%20Injection%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the web-based management interface of Cisco Crosswork Network Controller could allow an&amp;nbsp;authenticated, remote attacker to execute arbitrary commands on an affected device.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to insufficient input validation in the configuration&amp;nbsp;template engine of the web-based management interface. An attacker could exploit this vulnerability by sending a crafted request to the affected device. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system in limited areas of the file system. This vulnerability affects only areas of the operating system for which the template user has &lt;em&gt;write &lt;/em&gt;permissions.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;To exploit this vulnerability, the attacker must have valid template user credentials with &lt;em&gt;write &lt;/em&gt;permissions. Template users with &lt;em&gt;read &lt;/em&gt;permissions cannot exploit this vulnerability.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cnc-inj-QNMeEmxk&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cnc-inj-QNMeEmxk&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20220
		    
         </description>
          
		  <pubDate>2026-06-17 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cnc-inj-QNMeEmxk</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Webex App Open Redirect Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-app-redirect-KOyxhffH?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Webex%20App%20Open%20Redirect%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the browser-based version of Cisco Webex App could have allowed an unauthenticated, remote attacker to redirect users to a malicious webpage. Cisco has addressed this vulnerability in the Cisco Webex App, and no customer action is needed.&lt;/p&gt;
&lt;p&gt;This vulnerability existed due to improper input validation of URL parameters in an HTTP request. Prior to this vulnerability being addressed, an attacker could have exploited this vulnerability by persuading a user to click a crafted URL. A successful exploit could have allowed the attacker to redirect a user to a malicious website.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-app-redirect-KOyxhffH&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-app-redirect-KOyxhffH&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20178
		    
         </description>
          
		  <pubDate>2026-06-17 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-app-redirect-KOyxhffH</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa-EHchtZk?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Controller%20Authentication%20Bypass%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, and Cisco Catalyst SD-WAN Validator, formerly SD-WAN vBond, could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges on an affected system.&lt;/p&gt;
&lt;p&gt;This vulnerability exists because the peering authentication mechanism in an affected system is not working properly. An attacker could exploit this vulnerability by sending crafted requests to an affected system. A successful exploit could allow the attacker to log in to an affected Cisco Catalyst SD-WAN Controller as an internal, high-privileged, non&lt;em&gt;-root&lt;/em&gt;&amp;nbsp;user account. Using this account, the attacker could access NETCONF, which would then allow the attacker to manipulate network configuration for the SD-WAN fabric.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa-EHchtZk&#034; rel=&#034;nofollow&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa-EHchtZk&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Critical
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20127
		    
         </description>
          
		  <pubDate>2026-06-16 17:39:47.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa-EHchtZk</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa2-v69WY2SW?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Controller%20Authentication%20Bypass%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;&lt;strong&gt;May 2026: This security advisory provides the details and fix information for a vulnerability that was discovered and fixed after the &lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa-EHchtZk&#034;&gt;Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability&lt;/a&gt; was disclosed in February 2026. This new advisory is for a new vulnerability in the control connection handshaking. The &lt;a href=&#034;#IOC&#034;&gt;Indicators of Compromise&lt;/a&gt; section of this advisory includes Show Control Connections guidance to help with system checks.&amp;nbsp;&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, and Cisco Catalyst SD-WAN Validator, formerly SD-WAN vBond, could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges on an affected system.&lt;/p&gt;
&lt;p&gt;This vulnerability exists because the peering authentication mechanism in an affected system is not working properly. An attacker could exploit this vulnerability by sending crafted requests to the affected system. A successful exploit could allow the attacker to log in to an affected Cisco Catalyst SD-WAN Controller as an internal, high-privileged, non-&lt;em&gt;root&lt;/em&gt; user account. Using this account, the attacker could access NETCONF, which would then allow the attacker to manipulate network configuration for the SD-WAN fabric.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Important: &lt;/strong&gt;To preserve possible indicators of compromise, &lt;span class=&#034;more&#034;&gt;customers should issue the &lt;a href=&#034;https://www.cisco.com/c/en/us/support/docs/routers/sd-wan/225842-remediate-catalyst-sd-wan-security.html&#034; target=&#034;_blank&#034; rel=&#034;noopener&#034;&gt;&lt;strong&gt;request admin-tech&lt;/strong&gt;&lt;/a&gt; command from each of the control components in the SD-WAN deployment before upgrading. After the &lt;em&gt;admin-tech&lt;/em&gt; file has been collected,&lt;/span&gt; software should be upgraded at the earliest opportunity.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Before upgrading an SD-WAN deployment to a fixed release, retain relevant logs. After upgrading, verify that the system has not been compromised by checking the logs for the indicators of compromise as documented in this advisory. If the logs show indicators of compromise and the system is confirmed to be compromised, applying the software update alone will not resolve the vulnerability. In such cases, follow the specific remediation steps that are provided by the Cisco Technical Assistance Center (TAC) to help secure the system.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link: &lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa2-v69WY2SW&#034; target=&#034;_blank&#034; rel=&#034;noopener&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa2-v69WY2SW&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Critical
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20182
		    
         </description>
          
		  <pubDate>2026-06-16 17:39:46.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa2-v69WY2SW</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Catalyst SD-WAN Manager Arbitrary File Write Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-arbfw-c2rZvQ?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Manager%20Arbitrary%20File%20Write%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the &lt;span class=&#034;mce-annotation tox-comment&#034; data-mce-annotation-uid=&#034;CONV-0021229&#034; data-mce-annotation=&#034;tinycomments&#034;&gt;web UI&lt;/span&gt; of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker to create a file or overwrite any file on the filesystem of an affected system.&lt;/p&gt;
&lt;p&gt;This vulnerability exists because the affected software does not properly validate user-supplied input during a file upload process. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected API endpoint of the affected system. A successful exploit could allow the attacker to create or overwrite any file on the underlying operating system. This file could later be used to elevate to &lt;em&gt;root&lt;/em&gt;. To exploit this vulnerability, the attacker must have valid credentials with at least &lt;em&gt;write &lt;/em&gt;access.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-arbfw-c2rZvQ&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-arbfw-c2rZvQ&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20262
		    
         </description>
          
		  <pubDate>2026-06-15 22:00:51.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-arbfw-c2rZvQ</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Webex Meetings Cross-Site Scripting Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-xss-jw3NeQzS?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Webex%20Meetings%20Cross-Site%20Scripting%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the web-based user interface of Cisco Webex Meetings could have allowed an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. Cisco has addressed this vulnerability in the Webex Meetings service, and no customer action is needed.&lt;/p&gt;
&lt;p&gt;This vulnerability existed because of insufficient validation of user input. Prior to this vulnerability being addressed, an attacker could have exploited this vulnerability by persuading a user to follow a malicious link. A successful exploit could have allowed the attacker to execute arbitrary script code in the browser of the targeted user or access sensitive, browser-based information.&lt;/p&gt;

&lt;p&gt;As mentioned, Cisco has addressed this vulnerability in the Webex Meetings service, and no customer action is necessary to update on-premises software or devices. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-xss-jw3NeQzS&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-xss-jw3NeQzS&lt;/a&gt;&lt;/p&gt;

			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20233
		    
         </description>
          
		  <pubDate>2026-06-03 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-xss-jw3NeQzS</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Nexus 3000 and 9000 Series Switches Border Gateway Protocol Denial of Service Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bgp-iefab-3hb2pwtx?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Nexus%203000%20and%209000%20Series%20Switches%20Border%20Gateway%20Protocol%20Denial%20of%20Service%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the Border Gateway Protocol (BGP)&amp;nbsp;&lt;strong&gt;enforce-first-as&lt;/strong&gt; feature of&lt;span class=&#034;ng-binding&#034;&gt;&amp;nbsp;Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches in standalone NX-OS mode&lt;/span&gt; could allow an unauthenticated, remote attacker to trigger BGP peer flaps, resulting in a denial of service (DoS) condition.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to incorrect parsing of a transitive BGP attribute. An attacker could exploit this vulnerability by sending a crafted BGP update through an established BGP peer session. If the update propagates to an affected device, it could cause the device to drop the BGP session and flap with the BGP peer that is forwarding this update, resulting in a DoS condition.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bgp-iefab-3hb2pwtx&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bgp-iefab-3hb2pwtx&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20171
		    
         </description>
          
		  <pubDate>2026-05-20 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bgp-iefab-3hb2pwtx</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Secure Workload Unauthorized API Access Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-csw-pnbsa-g8WEnuy?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Workload%20Unauthorized%20API%20Access%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the&amp;nbsp;access validation of internal REST APIs of Cisco Secure Workload could allow an unauthenticated, remote attacker to access site resources with the privileges of the&amp;nbsp;&lt;em&gt;Site Admin&lt;/em&gt; role.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to insufficient validation and authentication when accessing REST API endpoints. An attacker could exploit this vulnerability if they are able to send a crafted API request to an affected endpoint. A successful exploit could allow the attacker to read sensitive information and make configuration changes across tenant boundaries with the privileges of the&amp;nbsp;&lt;em&gt;Site Admin&lt;/em&gt; user.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-csw-pnbsa-g8WEnuy&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-csw-pnbsa-g8WEnuy&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Critical
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20223
		    
         </description>
          
		  <pubDate>2026-05-20 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-csw-pnbsa-g8WEnuy</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco ThousandEyes Virtual Appliance Authenticated Remote Code Execution Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-tevacert-rce-RMJVEym5?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20ThousandEyes%20Virtual%20Appliance%20Authenticated%20Remote%20Code%20Execution%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the SSL certificate handling of Cisco ThousandEyes Virtual Appliance could allow an authenticated, remote attacker to execute commands on the underlying operating system as the&amp;nbsp;&lt;em&gt;root&lt;/em&gt; user.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to insufficient validation of user-supplied input. An authenticated attacker could exploit this vulnerability by uploading a crafted certificate to an affected device. A successful exploit could allow the attacker to execute arbitrary code as the&amp;nbsp;&lt;em&gt;root&lt;/em&gt; user on the underlying operating system. To exploit this vulnerability, the attacker must have valid administrative credentials.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-tevacert-rce-RMJVEym5&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-tevacert-rce-RMJVEym5&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20199
		    
         </description>
          
		  <pubDate>2026-05-20 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-tevacert-rce-RMJVEym5</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco ThousandEyes Enterprise Agent BrowserBot Command Injection Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-tebbot-cmdinj-wN3yQ5gn?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20ThousandEyes%20Enterprise%20Agent%20BrowserBot%20Command%20Injection%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the BrowserBot component of Cisco ThousandEyes Enterprise Agent could have allowed an authenticated, remote attacker to execute arbitrary commands on Agents on behalf of the BrowserBot synthetics orchestration process. Cisco has addressed this vulnerability in the Cisco ThousandEyes Enterprise Agent, and no customer action is needed.&lt;/p&gt;
&lt;p&gt;This vulnerability was due to insufficient input validation of command arguments that are supplied by the user. Prior to this vulnerability being addressed, an attacker could have exploited this vulnerability by authenticating to the ThousandEyes SaaS and submitting crafted input into the affected parameter. A successful exploit could have allowed the attacker to execute arbitrary commands within the BrowserBot container as the &lt;em&gt;node&lt;/em&gt; user.&lt;/p&gt;
&lt;p&gt;To exploit this vulnerability, the attacker must have valid user credentials for the ThousandEyes SaaS and the ability to manage transaction tests.&lt;/p&gt;

&lt;p&gt;As mentioned, Cisco has addressed this vulnerability in the ThousandEyes service, and no customer action is necessary to update on-premises software or devices. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-tebbot-cmdinj-wN3yQ5gn&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-tebbot-cmdinj-wN3yQ5gn&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20206
		    
         </description>
          
		  <pubDate>2026-05-20 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-tebbot-cmdinj-wN3yQ5gn</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Continued Evolution of Persistence Mechanism Against Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-persist-CISAED25-03?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Continued%20Evolution%20of%20Persistence%20Mechanism%20Against%20Cisco%20Secure%20Firewall%20Adaptive%20Security%20Appliance%20and%20Secure%20Firewall%20Threat%20Defense%26vs_k=1</link>
          
          <description>
			&lt;p&gt;On April 23, 2026, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued an update to &lt;a href=&#034;https://cisa.gov/news-events/directives/v1-ed-25-03-identify-and-mitigate-potential-compromise-cisco-devices&#034;&gt;V1: Emergency Directive (ED) 25-03: Identify and Mitigate Potential Compromise of Cisco Devices&lt;/a&gt; related to Cisco Secure Firewall Adaptive Security Appliance (ASA) and Cisco Secure Firewall Threat Defense (FTD) products.&lt;/p&gt;
&lt;p&gt;According to the update, the ArcaneDoor threat actor has developed a previously unknown persistence mechanism that is preserved across upgrading to the fixed releases that were published in September 2025. This persistence mechanism resides in the Cisco Firepower eXtensible Operating System (FXOS) Software base operating system for Cisco Secure Firewall ASA Software and Cisco Secure FTD Software installations on the affected hardware platforms.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Note:&lt;/strong&gt; According to the intelligence Cisco PSIRT has received to date, the initial compromise, begins with the attacker exploiting the following vulnerabilities before customers upgraded to the fixed releases that were made available in September 2025:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;CVE-2025-20333:&lt;/strong&gt; &lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-webvpn-z5xP8EUB&#034;&gt;Cisco Secure Firewall Adaptive Security Appliance Software and Secure Firewall Threat Defense Software VPN Web Server Remote Code Execution Vulnerability&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;CVE-2025-20362:&amp;nbsp;&lt;/strong&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-webvpn-YROOTUW&#034;&gt;Cisco Secure Firewall Adaptive Security Appliance Software and Secure Firewall Threat Defense Software VPN Web Server Unauthorized Access Vulnerability&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;For more information about the fixed releases that were made available in September 2025, see&amp;nbsp;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/resources/asa_ftd_continued_attacks&#034;&gt;Cisco Event Response: Continued Attacks Against Cisco Firewalls&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-persist-CISAED25-03&#034; rel=&#034;nofollow&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-persist-CISAED25-03&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Informational
		    
		    
         </description>
          
		  <pubDate>2026-05-19 17:49:15.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-persist-CISAED25-03</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Catalyst SD-WAN Manager Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-mltvnps2-JxpWm7R?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Manager%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			&lt;p&gt;Multiple vulnerabilities in Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow a remote attacker to&amp;nbsp;gain access to sensitive information, elevate privileges, or gain unauthorized access to the application.&lt;/p&gt;
&lt;p&gt;For more information about these vulnerabilities, see the &lt;a href=&#034;#details&#034;&gt;Details&lt;/a&gt; section of this advisory.&lt;/p&gt;
&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Cisco strongly recommends that customers upgrade to the fixed software indicated in this advisory.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-mltvnps2-JxpWm7R&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-mltvnps2-JxpWm7R&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Critical
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20209,CVE-2026-20210,CVE-2026-20224
		    
         </description>
          
		  <pubDate>2026-05-14 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-mltvnps2-JxpWm7R</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Crosswork Network Controller and Cisco Network Services Orchestrator Advisory</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nso-dos-7Egqyc?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Crosswork%20Network%20Controller%20and%20Cisco%20Network%20Services%20Orchestrator%20Advisory%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;Following the initial publication of the Security Advisory about a denial of service (DoS) condition in Cisco Crosswork Network Controller and Cisco Network Services Orchestrator (NSO), additional information has been made available to the Cisco Product Security Incident Response Team (PSIRT).&lt;/p&gt;
&lt;p&gt;Upon further analysis, the Cisco PSIRT has reclassified this issue as a customer-configurable, resource management issue rather than a security vulnerability.&lt;/p&gt;

&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nso-dos-7Egqyc&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nso-dos-7Egqyc&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Informational
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20188
		    
         </description>
          
		  <pubDate>2026-05-14 15:56:13.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nso-dos-7Egqyc</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Unity Connection Remote Code Execution and Server-Side Request Forgery Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-unity-rce-ssrf-hENhuASy?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Unity%20Connection%20Remote%20Code%20Execution%20and%20Server-Side%20Request%20Forgery%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			&lt;p&gt;Multiple vulnerabilities in Cisco Unity Connection could allow a remote attacker to execute arbitrary code on&amp;nbsp;or conduct server-side request forgery (SSRF) attacks through an affected device.&lt;/p&gt;
&lt;p&gt;For more information about these vulnerabilities, see the &lt;a href=&#034;#details&#034;&gt;Details&lt;/a&gt; section of this advisory.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-unity-rce-ssrf-hENhuASy&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-unity-rce-ssrf-hENhuASy&lt;/a&gt;&lt;/p&gt;

			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  High
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20034,CVE-2026-20035
		    
         </description>
          
		  <pubDate>2026-05-06 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-unity-rce-ssrf-hENhuASy</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Enterprise Chat and Email Lite Agent File Upload Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ece-lite-agent-BCgSN8eb?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Enterprise%20Chat%20and%20Email%20Lite%20Agent%20File%20Upload%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the Lite Agent feature of Cisco Enterprise Chat and Email (ECE) could allow an authenticated, remote attacker to conduct browser-based attacks. To exploit this vulnerability, the attacker must have valid credentials for a user account with at least the role of &lt;em&gt;Agent&lt;/em&gt;.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to inadequate validation of file contents during file upload operations. An attacker could exploit this vulnerability by uploading a file that contains malicious scripts or HTML code, which the application could make available to other users to access. A successful exploit could allow the attacker to execute the contents of that file in the browser of a user and conduct browser-based attacks.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ece-lite-agent-BCgSN8eb&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ece-lite-agent-BCgSN8eb&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20172
		    
         </description>
          
		  <pubDate>2026-05-06 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ece-lite-agent-BCgSN8eb</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Identity Services Engine Authentication Bypass Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-unauth-bypass-uxjRXGpb?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20Authentication%20Bypass%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			&lt;p&gt;Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow a remote attacker to bypass authorization mechanisms or examine error messages to gain access to sensitive information on an affected device.&lt;/p&gt;
&lt;p&gt;For more information about these vulnerabilities, see the &lt;a href=&#034;#details&#034;&gt;Details&lt;/a&gt; section of this advisory.&lt;/p&gt;
&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-unauth-bypass-uxjRXGpb&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-unauth-bypass-uxjRXGpb&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20193,CVE-2026-20195
		    
         </description>
          
		  <pubDate>2026-05-06 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-unauth-bypass-uxjRXGpb</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Prime Infrastructure Information Disclosure Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-pi-unauth-infodiscl-LFnLgmey?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Prime%20Infrastructure%20Information%20Disclosure%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the log file download functionality of Cisco Prime Infrastructure could allow an&amp;nbsp;authenticated, remote attacker to download arbitrary log files from the server.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to insufficient authorization checks on the download service API. An attacker could exploit this vulnerability by submitting a crafted URL request to an affected device. A successful exploit could allow the attacker to download sensitive log files that they would otherwise not have authorization to access.&lt;/p&gt;
&lt;p&gt;To exploit this vulnerability, the attacker must have valid credentials to access the web-based management interface of the affected device.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-pi-unauth-infodiscl-LFnLgmey&#034; target=&#034;_blank&#034; rel=&#034;noopener&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-pi-unauth-infodiscl-LFnLgmey&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20189
		    
         </description>
          
		  <pubDate>2026-05-06 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-pi-unauth-infodiscl-LFnLgmey</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Slido Insecure Direct Object Reference Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-slido-idor-CpsFmKxN?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Slido%20Insecure%20Direct%20Object%20Reference%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the REST API of Cisco Slido could have allowed an authenticated, remote attacker to access the social profile data of other users or affect quiz and poll results. Cisco has addressed this vulnerability in Cisco Slido and no customer action is needed.&lt;/p&gt;
&lt;p&gt;This vulnerability existed because of the presence of an insecure direct object reference. Prior to this vulnerability being addressed, an attacker could have exploited this vulnerability by sending a crafted request to the vulnerable API endpoint. A successful exploit could have allowed the attacker to view the social profiles of other users or affect quiz and poll results.&lt;/p&gt;

&lt;p&gt;As mentioned, Cisco has addressed this vulnerability in the Slido service, and no customer action is necessary to update on-premises software or devices. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-slido-idor-CpsFmKxN&#034; target=&#034;_blank&#034; rel=&#034;noopener&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-slido-idor-CpsFmKxN&lt;/a&gt;&lt;/p&gt;

			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20219
		    
         </description>
          
		  <pubDate>2026-05-06 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-slido-idor-CpsFmKxN</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco IoT Field Network Director Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iot-fnd-dos-n8N26Q4u?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20IoT%20Field%20Network%20Director%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			&lt;p&gt;Multiple vulnerabilities in the web-based management interface of Cisco IoT Field Network Director Software could allow an authenticated, remote attacker to access files, execute commands, and cause denial of service (DoS) conditions on managed routers.&lt;/p&gt;
&lt;p&gt;For more information about these vulnerabilities, see the&amp;nbsp;&lt;a href=&#034;#details&#034;&gt;Details&lt;/a&gt; section of this advisory.&lt;/p&gt;
&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iot-fnd-dos-n8N26Q4u&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iot-fnd-dos-n8N26Q4u&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  High
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20167,CVE-2026-20168,CVE-2026-20169
		    
         </description>
          
		  <pubDate>2026-05-06 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iot-fnd-dos-n8N26Q4u</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco SG350 and SG350X Series Managed Switches SNMP Denial of Service Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sg350-snmp-dos-GEFZr2Tj?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20SG350%20and%20SG350X%20Series%20Managed%20Switches%20SNMP%20Denial%20of%20Service%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of&amp;nbsp;Cisco 350 Series Managed Switches (SG350) and Cisco 350X Series Stackable Managed Switches (SG350X)&amp;nbsp;firmware could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;This vulnerability is due to improper error handling when parsing response data for a specific SNMP request. An attacker could exploit this vulnerability by sending a specific SNMP request to an affected device. A successful exploit could allow the attacker to cause the device to reload unexpectedly, resulting in a DoS condition.&lt;/p&gt;
&lt;p&gt;This vulnerability affects SNMP versions 1, 2c, and 3. To exploit this vulnerability through SNMPv2c or earlier, the attacker must know a valid &lt;em&gt;read-write&lt;/em&gt; or &lt;em&gt;read-only&lt;/em&gt; SNMP community string for the affected system. To exploit this vulnerability through SNMPv3, the attacker must have valid SNMP user credentials for the affected system.&lt;/p&gt;

&lt;p&gt;Cisco has not released and will not release software updates that address this vulnerability because the affected products are past the date for End of Software Maintenance Releases. The Cisco Product Security Incident Response Team (PSIRT) will continue to evaluate and disclose security vulnerabilities that affect these products until the Last Date of Support is reached.&lt;/p&gt;
&lt;p&gt;There are no workarounds that address this vulnerability. However, there is a mitigation.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sg350-snmp-dos-GEFZr2Tj&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sg350-snmp-dos-GEFZr2Tj&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  High
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20185
		    
         </description>
          
		  <pubDate>2026-05-06 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sg350-snmp-dos-GEFZr2Tj</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-xss-42tgsdMG?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20Stored%20Cross-Site%20Scripting%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the interface.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;These vulnerabilities are due to insufficient validation of user-supplied input by the web-based management interface of an affected system. An attacker could exploit these vulnerabilities by injecting malicious code into specific pages of the interface. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information. To exploit these vulnerabilities, the attacker must have&amp;nbsp;valid administrative credentials.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-xss-42tgsdMG&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-xss-42tgsdMG&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2025-20204,CVE-2025-20205
		    
         </description>
          
		  <pubDate>2026-05-05 18:21:38.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-xss-42tgsdMG</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Identity Services Engine Remote Code Execution and Path Traversal Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-traversal-8bYndVrZ?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20Remote%20Code%20Execution%20and%20Path%20Traversal%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			&lt;p&gt;Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to achieve remote code execution or conduct path traversal attacks on an affected device. To exploit these vulnerabilities, the attacker must have valid administrative credentials.&lt;/p&gt;
&lt;p&gt;For more information about these vulnerabilities, see the&amp;nbsp;&lt;a href=&#034;#details&#034;&gt;Details&lt;/a&gt; section of this advisory.&lt;/p&gt;
&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-traversal-8bYndVrZ&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-traversal-8bYndVrZ&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Critical
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20147,CVE-2026-20148
		    
         </description>
          
		  <pubDate>2026-04-28 14:33:18.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-traversal-8bYndVrZ</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco ACI Multi-Site CloudSec Encryption Information Disclosure Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-aci-cloudsec-enc-Vs5Wn2sX?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20ACI%20Multi-Site%20CloudSec%20Encryption%20Information%20Disclosure%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the Cisco ACI Multi-Site CloudSec encryption feature of Cisco Nexus 9000 Series Fabric Switches in ACI mode could allow an unauthenticated, remote attacker to read or modify intersite encrypted traffic.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to an issue with the implementation of the ciphers that are used by the CloudSec encryption feature on affected switches. An attacker with an on-path position between the ACI sites could exploit this vulnerability by intercepting intersite encrypted traffic and using cryptanalytic techniques to break the encryption. A successful exploit could allow the attacker to read or modify the traffic that is transmitted between the sites.&lt;/p&gt;
&lt;p&gt;Cisco has deprecated and removed the ACI Multi-Site CloudSec encryption feature that is affected by this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-aci-cloudsec-enc-Vs5Wn2sX&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-aci-cloudsec-enc-Vs5Wn2sX&lt;/a&gt;&lt;/p&gt;

			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  High
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2023-20185
		    
         </description>
          
		  <pubDate>2026-04-24 13:05:36.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-aci-cloudsec-enc-Vs5Wn2sX</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Integrated Management Controller Cross-Site Scripting Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-xss-A2tkgVAB?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Integrated%20Management%20Controller%20Cross-Site%20Scripting%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			&lt;p&gt;Multiple vulnerabilities in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow a remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface.&lt;/p&gt;
&lt;p&gt;For more information about these vulnerabilities, see the &lt;a href=&#034;#details&#034;&gt;Details&lt;/a&gt; section of this advisory.&lt;/p&gt;
&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-xss-A2tkgVAB&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-xss-A2tkgVAB&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20085,CVE-2026-20087,CVE-2026-20088,CVE-2026-20089,CVE-2026-20090
		    
         </description>
          
		  <pubDate>2026-04-22 18:05:52.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-xss-A2tkgVAB</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Integrated Management Controller Command Injection and Remote Code Execution Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-cmd-inj-3hKN3bVt?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Integrated%20Management%20Controller%20Command%20Injection%20and%20Remote%20Code%20Execution%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			&lt;p&gt;Multiple vulnerabilities in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to execute arbitrary code or commands on the underlying operating system of an affected system and elevate privileges to&amp;nbsp;&lt;em&gt;root&lt;/em&gt;.&lt;/p&gt;
&lt;p&gt;For more information about these vulnerabilities, see the&amp;nbsp;&lt;a href=&#034;#details&#034;&gt;Details&lt;/a&gt; section of this advisory.&lt;/p&gt;
&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-cmd-inj-3hKN3bVt&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-cmd-inj-3hKN3bVt&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  High
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20094,CVE-2026-20095,CVE-2026-20096,CVE-2026-20097
		    
         </description>
          
		  <pubDate>2026-04-22 18:01:40.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-cmd-inj-3hKN3bVt</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Catalyst SD-WAN Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			&lt;p&gt;Multiple vulnerabilities in Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an attacker to access an affected system, elevate privileges to&amp;nbsp;&lt;em&gt;root,&lt;/em&gt; gain access to sensitive information, and overwrite arbitrary files.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;For more information about these vulnerabilities, see the &lt;a href=&#034;#details&#034;&gt;Details&lt;/a&gt; section of this advisory.&lt;/p&gt;
&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;Cisco strongly recommends that customers upgrade to the fixed software indicated in this advisory.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v&lt;/a&gt;&lt;/p&gt;

			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Critical
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20122,CVE-2026-20126,CVE-2026-20128,CVE-2026-20129,CVE-2026-20133
		    
         </description>
          
		  <pubDate>2026-04-22 15:10:56.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Webex Services Certificate Validation Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-cui-cert-8jSZYhWL?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Webex%20Services%20Certificate%20Validation%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the integration of single sign-on (SSO) with Control Hub in Cisco Webex Services could have allowed an unauthenticated, remote attacker to impersonate any user within the service.&lt;/p&gt;
&lt;p&gt;This vulnerability existed because of improper certificate validation. Prior to this vulnerability being addressed, an attacker could have exploited this vulnerability by connecting to a service endpoint and supplying a crafted token. A successful exploit could have allowed the attacker to gain unauthorized access to legitimate Cisco Webex services.&lt;/p&gt;

&lt;p&gt;Cisco has addressed this vulnerability in the Cisco Webex service. However, customer action is necessary for affected organizations that are using trust anchors with their SSO integration.&lt;/p&gt;
&lt;p&gt;There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;To avoid service interruption, customers who are using trust anchors with their SSO integration should upload a new identity provider (IdP) SAML certificate to Control Hub. For more information, see &lt;a href=&#034;https://help.webex.com/en-us/article/nstvmyo/Manage-single-sign-on-integration-in-Control-Hub#Cisco_Task_in_List_GUI.dita_07fbdc21-41a0-482f-99dc-b8c17adbd087&#034;&gt;Manage single sign-on integration in Control Hub&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-cui-cert-8jSZYhWL&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-cui-cert-8jSZYhWL&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Critical
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20184
		    
         </description>
          
		  <pubDate>2026-04-16 18:52:15.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-cui-cert-8jSZYhWL</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Secure Web Appliance Authentication Bypass Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wsa-auth-bypass-6YZkTQhd?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Web%20Appliance%20Authentication%20Bypass%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the authentication service feature of Cisco AsyncOS Software for Cisco Secure Web Appliance could allow an unauthenticated, remote attacker to bypass authentication policy requirements.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to improper validation of user-supplied authentication input in HTTP requests. An attacker could exploit this vulnerability by sending HTTP requests that contain specific authentication requests to an affected device. A successful exploit could allow the attacker to bypass policy enforcement on the device. There is no direct impact to the Cisco Secure Web Appliance. However, as a result of exploiting this vulnerability, an attacker could send HTTP requests that should be restricted through the device.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wsa-auth-bypass-6YZkTQhd&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wsa-auth-bypass-6YZkTQhd&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20152
		    
         </description>
          
		  <pubDate>2026-04-16 13:14:04.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wsa-auth-bypass-6YZkTQhd</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Identity Services Engine Remote Code Execution Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-4fverepv?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20Remote%20Code%20Execution%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			&lt;p&gt;Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To exploit these vulnerabilities, the attacker must have at least Read Only Admin credentials.&lt;/p&gt;
&lt;p&gt;These vulnerabilities are due to insufficient validation of user-supplied input. An attacker could exploit these vulnerabilities by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to obtain user-level access to the underlying operating system and then elevate privileges to&amp;nbsp;&lt;em&gt;root&lt;/em&gt;. In single-node Cisco ISE deployments, successful exploitation of these vulnerabilities could cause the affected ISE node to become unavailable, resulting in a denial of service (DoS) condition. In that condition, endpoints that have not already authenticated would be unable to access the network until the node is restored.&lt;/p&gt;
&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-4fverepv&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-4fverepv&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Critical
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20180,CVE-2026-20186
		    
         </description>
          
		  <pubDate>2026-04-15 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-4fverepv</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Identity Services Engine Authenticated Privilege Escalation Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-cmd-inj-5WSJcYJB?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20Authenticated%20Privilege%20Escalation%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the&amp;nbsp;CLI of Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, local attacker with administrative privileges to perform a command injection attack on the underlying operating system and elevate privileges to &lt;em&gt;root&lt;/em&gt;.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to insufficient validation of user supplied input. An attacker could exploit this vulnerability by providing crafted input to a specific CLI command. A successful exploit could allow the attacker to elevate their privileges to &lt;em&gt;root &lt;/em&gt;on the underlying operating system.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-cmd-inj-5WSJcYJB&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-cmd-inj-5WSJcYJB&lt;/a&gt;&lt;/p&gt;

			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20136
		    
         </description>
          
		  <pubDate>2026-04-15 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-cmd-inj-5WSJcYJB</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Identity Services Engine Multiple Cross-Site Scripting Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-isexss-BS8ctE7U?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20Multiple%20Cross-Site%20Scripting%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker with administrative&amp;nbsp;&lt;em&gt;write &lt;/em&gt;privileges to conduct a stored cross-site scripting (XSS) attack or a reflected XSS attack against a user of the web-based management interface of an affected device.&lt;/p&gt;
&lt;p&gt;These vulnerabilities are due to insufficient sanitization of user-supplied data that is stored in the web page. An attacker could exploit these vulnerabilities by convincing a user of the interface to click a specific link or view an affected web page. The injected script code may be executed in the context of the web-based management interface or allow the attacker to access sensitive browser-based information.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-isexss-BS8ctE7U&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-isexss-BS8ctE7U&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20132
		    
         </description>
          
		  <pubDate>2026-04-15 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-isexss-BS8ctE7U</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco ThousandEyes Enterprise Agent Arbitrary File Overwrite Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-te-agentfilewrite-tqUw3SMU?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20ThousandEyes%20Enterprise%20Agent%20Arbitrary%20File%20Overwrite%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the CLI of Cisco ThousandEyes Enterprise Agent could allow an authenticated, local attacker with low privileges to overwrite arbitrary files on the local system of an affected device.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to improper access controls on files that are on the local file system&amp;nbsp;of an affected device. An attacker could exploit this vulnerability by placing a symbolic link in a specific location on the local file system. A successful exploit could allow the attacker to bypass file system permissions and overwrite arbitrary files on the affected device.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-te-agentfilewrite-tqUw3SMU&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-te-agentfilewrite-tqUw3SMU&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20161
		    
         </description>
          
		  <pubDate>2026-04-15 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-te-agentfilewrite-tqUw3SMU</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Unity Connection Arbitrary File Download Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-unity-file-download-RmKEVWPx?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Unity%20Connection%20Arbitrary%20File%20Download%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;Multiple vulnerabilities in Cisco Unity Connection could allow an authenticated, remote attacker&amp;nbsp;to download arbitrary files from an affected system. To exploit these vulnerabilities, the attacker must have valid administrative credentials.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;These vulnerabilities are due to improper sanitization of user input to the web-based management interface. An attacker could exploit these vulnerabilities by sending a crafted HTTPS request. A successful exploit could allow the attacker to download arbitrary files from an affected system.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-unity-file-download-RmKEVWPx&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-unity-file-download-RmKEVWPx&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20078,CVE-2026-20081
		    
         </description>
          
		  <pubDate>2026-04-15 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-unity-file-download-RmKEVWPx</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Unity Connection Cross-Site Scripting, Open Redirect, and SQL Injection Vulnerabilities</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-unity-vulns-n2EJSbbw?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Unity%20Connection%20Cross-Site%20Scripting,%20Open%20Redirect,%20and%20SQL%20Injection%20Vulnerabilities%26vs_k=1</link>
          
          <description>
			&lt;p&gt;Multiple vulnerabilities in Cisco Unity Connection could allow a remote attacker to conduct a cross-site scripting (XSS) attack, an open redirect attack, and an SQL injection attack.&lt;/p&gt;
&lt;p&gt;For more information about these vulnerabilities, see the &lt;a href=&#034;#details&#034;&gt;Details&lt;/a&gt; section of this advisory.&lt;/p&gt;
&lt;p&gt;Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-unity-vulns-n2EJSbbw&#034; target=&#034;_blank&#034; rel=&#034;noopener&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-unity-vulns-n2EJSbbw&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20059,CVE-2026-20060,CVE-2026-20061
		    
         </description>
          
		  <pubDate>2026-04-15 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-unity-vulns-n2EJSbbw</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Webex Contact Center Cross-Site Scripting Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webexcc-xss-WEX5nUnA?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Webex%20Contact%20Center%20Cross-Site%20Scripting%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the Desktop Agent functionality of Cisco Webex Contact Center could have allowed an unauthenticated, remote attacker to conduct cross-site scripting attacks. Cisco has addressed this vulnerability in the Cisco Webex Contact Center service, and no customer action is needed.&lt;/p&gt;
&lt;p&gt;This vulnerability existed because HTML and script content was not properly handled. Prior to this vulnerability being addressed, an attacker could have exploited this vulnerability by persuading a user to follow a malicious link. A successful exploit could have allowed the attacker to steal sensitive information from the browser, including authentication and session information.&lt;/p&gt;

&lt;p&gt;As mentioned, Cisco has addressed this vulnerability in the Cisco Webex Contact Center service, and no customer action is necessary to update on-premises software or devices. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webexcc-xss-WEX5nUnA&#034; rel=&#034;nofollow&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webexcc-xss-WEX5nUnA&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20170
		    
         </description>
          
		  <pubDate>2026-04-15 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webexcc-xss-WEX5nUnA</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco IOS XE Software Denial of Service Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-mntc-dos-LZweQcyq?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20IOS%20XE%20Software%20Denial%20of%20Service%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker to cause a denial of service (DoS) condition on an affected device.&lt;/p&gt;
&lt;p&gt;This vulnerability exists because incorrect privileges are associated with the&amp;nbsp;&lt;strong&gt;start maintenance&lt;/strong&gt; command. An attacker could exploit this vulnerability by accessing the management CLI of the affected device as a low-privileged user and using the&amp;nbsp;&lt;strong&gt;start maintenance&lt;/strong&gt; command. A successful exploit could allow the attacker to put the device in maintenance mode, which shuts down interfaces, resulting in a denial of service (DoS) condition. In case of exploitation, a device administrator can connect to the CLI and use the &lt;strong&gt;stop maintenance&lt;/strong&gt; command to restore operations.&amp;nbsp;&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-mntc-dos-LZweQcyq&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-mntc-dos-LZweQcyq&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;This advisory is part of the March 2026 release of the Cisco IOS and IOS XE Software Security Advisory Bundled Publication. For a complete list of the advisories and links to them, see &lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/viewErp.x?alertId=ERP-75297&#034;&gt;Cisco Event Response: March 2026 Semiannual Cisco IOS and IOS XE Software Security Advisory Bundled Publication&lt;/a&gt;.&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Medium
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20110
		    
         </description>
          
		  <pubDate>2026-04-02 19:43:54.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-mntc-dos-LZweQcyq</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Smart Software Manager On-Prem Arbitrary Command Execution Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ssm-cli-execution-cHUcWuNr?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Smart%20Software%20Manager%20On-Prem%20Arbitrary%20Command%20Execution%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected SSM On-Prem host.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to the unintentional exposure of an&amp;nbsp;internal service. An attacker could exploit this vulnerability by sending a crafted request to the API of the exposed service. A successful exploit could allow the attacker to execute commands on the underlying operating system with &lt;em&gt;root&lt;/em&gt;-level privileges.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ssm-cli-execution-cHUcWuNr&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ssm-cli-execution-cHUcWuNr&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  Critical
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20160
		    
         </description>
          
		  <pubDate>2026-04-01 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ssm-cli-execution-cHUcWuNr</guid>
      </item>
    
	
    
	  <item>
	  <!-- I2R 9899 -->
          <title>Cisco Evolved Programmable Network Manager Improper Authorization Vulnerability</title>
          
           
            
             
			
		            
		 
          <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-epnm-improp-auth-mUwFWUU3?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Evolved%20Programmable%20Network%20Manager%20Improper%20Authorization%20Vulnerability%26vs_k=1</link>
          
          <description>
			
&lt;p&gt;A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) could allow an authenticated, remote attacker with low privileges to access sensitive information that they are not authorized to access.&lt;/p&gt;
&lt;p&gt;This vulnerability is due to improper authorization checks on a REST API endpoint of an affected device.&amp;nbsp;An attacker could exploit this vulnerability by querying the affected endpoint. A successful exploit could allow the attacker to view session information of active Cisco EPNM users, including users with administrative privileges, which could result in the affected device being compromised.&lt;/p&gt;

&lt;p&gt;Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.&lt;/p&gt;
&lt;p&gt;This advisory is available at the following link:&lt;br&gt;&lt;a href=&#034;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-epnm-improp-auth-mUwFWUU3&#034;&gt;https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-epnm-improp-auth-mUwFWUU3&lt;/a&gt;&lt;/p&gt;
			      
		           &amp;lt;br/&amp;gt;Security Impact Rating:  High
		    
		    
		        &amp;lt;br/&amp;gt;CVE: CVE-2026-20155
		    
         </description>
          
		  <pubDate>2026-04-01 16:00:00.0</pubDate>                   
          <guid>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-epnm-improp-auth-mUwFWUU3</guid>
      </item>
    
	
  </channel>
</rss> 
