Source |
The Hacker News |
Identifiant |
8641448 |
Date de publication |
2025-01-23 11:51:00 (vue: 2025-01-23 08:08:48) |
Titre |
Cisco Fixes Critical Privilege Escalation Flaw in Meeting Management (CVSS 9.9) |
Texte |
Cisco has released software updates to address a critical security flaw impacting Meeting Management that could permit a remote, authenticated attacker to gain administrator privileges on susceptible instances.
The vulnerability, tracked as CVE-2025-20156, carries a CVSS score of 9.9 out 10.0. It has been described as a privilege escalation flaw in the REST API of Cisco Meeting Management.
"This
Cisco has released software updates to address a critical security flaw impacting Meeting Management that could permit a remote, authenticated attacker to gain administrator privileges on susceptible instances.
The vulnerability, tracked as CVE-2025-20156, carries a CVSS score of 9.9 out 10.0. It has been described as a privilege escalation flaw in the REST API of Cisco Meeting Management.
"This |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
20156 2025 address administrator api attacker authenticated been carries cisco could critical cve cvss described escalation fixes flaw gain has impacting instances management meeting out permit privilege privileges released remote rest score security software susceptible tracked updates vulnerability |
Tags |
Vulnerability
|
Stories |
|
Move |
|