CRITICAL
In Less Than 24 Hours, Attackers Weaponize Cisco CUCM Flaw
A flaw in Cisco Unified Communications Manager (CUCM) and Unified CM SME enables server-side request forgery and escalates privileges to root. Attackers began exploiting the vulnerability within 24 hours of disclosure. Organizations running affected CUCM deployments should patch immediately given the speed of weaponization and the root-level impact.