# CVE-2026-20230

> A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an unauthenticated, remote attacker to conduct server-side request forgery (SSRF) attacks through an affected device. This vulnerability is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to write files to the underlying operating system that could be used later to elevate

- **CVSS:** 8.6 (HIGH)
- **EPSS:** 41.7%
- **CISA KEV:** yes
- **CWE:** CWE-918

Canonical: https://intel.threadlinqs.com/cve/CVE-2026-20230
Full threat coverage + IOCs via the Threadlinqs MCP server (Purple tier): https://intel.threadlinqs.com/mcp
