🔴 EXPLOITED
Cisco Unified CM can be exploited to root.
But only if WebDialer is on, and it ships off by default. Check before you panic-patch.
The "active exploitation" so far is one source dropping a test file. (CVE-2026-20230)
https://suriq.io/blog/cisco-unified-cm-cve-2026-20230-exploited
