Close Menu
VernoNews
  • Home
  • World
  • National
  • Science
  • Business
  • Health
  • Education
  • Lifestyle
  • Entertainment
  • Sports
  • Technology
  • Gossip
Trending

Greatest graphics card in 2025 (UK)

October 12, 2025

Lionel Messi scores two targets, assists as Inter Miami defeat Atlanta United | Soccer Information

October 12, 2025

British Airways launches new lounge design in Dubai as a part of GBP7bn transformation

October 12, 2025

Bambi Reveals Stunning Truce With Momma Dee On Love & Hip Hop

October 12, 2025

Shot Cecilia Simpson Over “Thank You”

October 12, 2025

3 Professional-Really useful Methods To Elevate Your At-House Facial

October 12, 2025

Simon Kohl on AlphaFold, Latent Labs and Generative A.I. in Biology

October 12, 2025
Facebook X (Twitter) Instagram
VernoNews
  • Home
  • World
  • National
  • Science
  • Business
  • Health
  • Education
  • Lifestyle
  • Entertainment
  • Sports
  • Technology
  • Gossip
VernoNews
Home»Technology»Cisco warns of a severe safety flaw in comms platform – and that it wants patching instantly
Technology

Cisco warns of a severe safety flaw in comms platform – and that it wants patching instantly

VernoNewsBy VernoNewsJuly 3, 2025No Comments2 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Reddit WhatsApp Email
Cisco warns of a severe safety flaw in comms platform – and that it wants patching instantly
Share
Facebook Twitter LinkedIn Pinterest WhatsApp Email




  • Login credentials for an account with root entry was present in Cisco’s Unified Communications Supervisor
  • There are not any workarounds, only a patch, so customers ought to replace now
  • Totally different variations of the software are affected

One other hardcoded credential for admin entry has been found in a serious software program utility – this time round it’s Cisco, who found the slip-up in its Unified Communications Supervisor (Unified CM) resolution.

Cisco Unified CM is an enterprise-grade IP telephony name management platform offering voice, video, messaging, mobility, and presence companies. It manages voice-over-IP (VoIP) calls, and permits for the administration of duties similar to person/machine provisioning, voicemail integration, conferencing, and extra.

Lately, Cisco discovered login credentials coded into this system, permitting for entry with root privileges. The bug is now tracked as CVE-2025-20309, and was given a most severity rating – 10/10 (crucial). The credentials had been apparently used throughout growth and testing, and may have been eliminated earlier than the product was shipped to the market.


It’s possible you’ll like

No proof of abuse

Cisco Unified CM and Unified CM SME Engineering Particular (ES) releases 15.0.1.13010-1 by 15.0.1.13017-1 had been mentioned to be affected, whatever the machine configuration. There are not any workarounds or mitigations, and the one strategy to tackle it’s to improve this system to model 15SU3 (July 2025).

“A vulnerability in Cisco Unified Communications Supervisor (Unified CM) and Cisco Unified Communications Supervisor Session Administration Version (Unified CM SME) might enable an unauthenticated, distant attacker to log in to an affected machine utilizing the basis account, which has default, static credentials that can’t be modified or deleted,” Cisco mentioned.

At press time, there was no proof of abuse within the wild.

Hardcoded credentials are one of many extra widespread causes of system infiltrations. Only recently Sitecore Expertise Platform, an enterprise-level content material administration system (CMS), held a hardcoded password for an inner person. It was only one letter – ‘b’ – which was tremendous straightforward to guess.

Signal as much as the TechRadar Professional e-newsletter to get all the highest information, opinion, options and steering your small business must succeed!

Roughly a yr in the past, safety researchers from Horizon3.ai discovered hardcoded credentials in SolarWinds’ Net Assist Desk.

Through BleepingComputer

You may additionally like

Avatar photo
VernoNews

Related Posts

Greatest graphics card in 2025 (UK)

October 12, 2025

5 Finest Folding Telephones (2025), Examined and Reviewed

October 12, 2025

Half of the Samsung Galaxy S26 fashions could use Exynos fairly than Snapdragon chipsets, new leak says

October 12, 2025
Leave A Reply Cancel Reply

Don't Miss
Technology

Greatest graphics card in 2025 (UK)

By VernoNewsOctober 12, 20250

If you happen to’re constructing a gaming PC from scratch or upgrading your present set-up,…

Lionel Messi scores two targets, assists as Inter Miami defeat Atlanta United | Soccer Information

October 12, 2025

British Airways launches new lounge design in Dubai as a part of GBP7bn transformation

October 12, 2025

Bambi Reveals Stunning Truce With Momma Dee On Love & Hip Hop

October 12, 2025

Shot Cecilia Simpson Over “Thank You”

October 12, 2025

3 Professional-Really useful Methods To Elevate Your At-House Facial

October 12, 2025

Simon Kohl on AlphaFold, Latent Labs and Generative A.I. in Biology

October 12, 2025
About Us
About Us

VernoNews delivers fast, fearless coverage of the stories that matter — from breaking news and politics to pop culture and tech. Stay informed, stay sharp, stay ahead with VernoNews.

Our Picks

Greatest graphics card in 2025 (UK)

October 12, 2025

Lionel Messi scores two targets, assists as Inter Miami defeat Atlanta United | Soccer Information

October 12, 2025

British Airways launches new lounge design in Dubai as a part of GBP7bn transformation

October 12, 2025
Trending

Bambi Reveals Stunning Truce With Momma Dee On Love & Hip Hop

October 12, 2025

Shot Cecilia Simpson Over “Thank You”

October 12, 2025

3 Professional-Really useful Methods To Elevate Your At-House Facial

October 12, 2025
  • Contact Us
  • Privacy Policy
  • Terms of Service
2025 Copyright © VernoNews. All rights reserved

Type above and press Enter to search. Press Esc to cancel.