Home Cisco CVE-2026-20098
Back to Cisco

CVE-2026-20098

Cisco Meeting Management - Certificate Management

Cisco CVSS 8.8 Updated March 16, 2026

Executive Risk Summary

"A vulnerability in the Certificate Management feature of Cisco Meeting Management could allow an authenticated, remote attacker to upload arbitrary files, execute arbitrary commands, and elevate privileges to root on an affected system. This vulnerability is due to improper input validation in certain sections of the web-based management interface."

Operational Audit Arsenal

Target Type Web-based management interface
Target Asset httpd.conf
Standard Path Management Plane

Manual Verification Required

This is a non-Windows asset (Cisco). Use the target asset details and official path provided above to verify your current version against the official vendor advisories listed below.

Patch Impact Forecast

Reboot Required Likely

Moderate

Internal Work Notes

CVE-2026-20098: Cisco Meeting Management Certificate Management vulnerability allows arbitrary file upload and command execution with root privileges. Validate user credentials and restrict access to the web-based management interface.

Technical Intelligence & Operational Utilities • Delivered Weekly

Intelligence Sources

Related Cisco Threats

Data compiled from NVD, MSRC, and CISA KEV Catalog. Intelligence synthesized via AI. Scripts provided for diagnostic purposes under MIT License.