Ce mail provient de l'extérieur, restons vigilants

=====================================================================

                            CERT-Renater

                Note d'Information No. 2026/VULN056
_____________________________________________________________________

DATE                : 21/01/2026

HARDWARE PLATFORM(S): /

OPERATING SYSTEM(S): Cisco Unified Communications Products,
                     Cisco Intersight Virtual Appliance,
              Cisco IEC6400 Wireless Backhaul Edge Compute Software,
              Cisco Packaged Contact Center Enterprise and Cisco
                      Unified Contact Center Enterprise.

=====================================================================
https://sec.cloudapps.cisco.com/security/center/publicationListing.x
_____________________________________________________________________

Below is the list of Cisco Security Advisories published by Cisco
PSIRT on 2026-January-21.

The following PSIRT security advisories (1 Critical, 3 Medium) were
published at 16:00 UTC today.

Table of Contents:

1) Cisco Unified Communications Products Remote Code Execution
Vulnerability - SIR: Critical

2) Cisco Intersight Virtual Appliance Privilege Escalation
Vulnerability - SIR: Medium

3) Cisco IEC6400 Wireless Backhaul Edge Compute Software SSH Denial of
Service Vulnerability - SIR: Medium

4) Cisco Packaged Contact Center Enterprise and Cisco Unified Contact
Center Enterprise Cross-Site Scripting Vulnerabilities - SIR: Medium

+--------------------------------------------------------------------

1) Cisco Unified Communications Products Remote Code Execution
Vulnerability

CVE-2026-20045

SIR: Critical

CVSS Score v(3.1): 8.2

URL: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-voice-rce-mORhqY4b ["https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-voice-rce-mORhqY4b"]

+--------------------------------------------------------------------

2) Cisco Intersight Virtual Appliance Privilege Escalation Vulnerability

CVE-2026-20092

SIR: Medium

CVSS Score v(3.1): 6.0

URL: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-intersight-privesc-p6tBm6jk ["https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-intersight-privesc-p6tBm6jk"]

+--------------------------------------------------------------------

3) Cisco IEC6400 Wireless Backhaul Edge Compute Software SSH Denial of
Service Vulnerability

CVE-2026-20080

SIR: Medium

CVSS Score v(3.1): 5.3

URL: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iec6400-Pem5uQ7v ["https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iec6400-Pem5uQ7v"]

+--------------------------------------------------------------------

4) Cisco Packaged Contact Center Enterprise and Cisco Unified Contact
Center Enterprise Cross-Site Scripting Vulnerabilities

CVE-2026-20055, CVE-2026-20109

SIR: Medium

CVSS Score v(3.1): 4.8

URL: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucce-pcce-xss-2JVyg3uD ["https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucce-pcce-xss-2JVyg3uD"]



=========================================================
+ CERT-RENATER        |    tel : 01-53-94-20-44         +
+ 23/25 Rue Daviel    |    fax : 01-53-94-20-41         +
+ 75013 Paris         |   email:cert@support.renater.fr +
=========================================================




