Junglewise Threat Intelligence

CVE-2026-20327: Cisco Unified Intelligence Center SQL injection in management interface

CVE-2026-20327 · Severity: medium · CVSS 6.5 · Published 2026-08-19

Vendors: Cisco.

Executive brief

Cisco Unified Intelligence Center is a unified communications analytics platform used to monitor and optimize contact center performance. A SQL injection vulnerability in its web-based management interface allows authenticated users with valid credentials to extract sensitive data from the internal database. This could expose customer interaction records, call logs, and other sensitive business intelligence.

Technical details

The vulnerability is a blind SQL injection (CWE-89) in the web-based management interface caused by insufficient validation of user-supplied input. An authenticated attacker with valid credentials can send a crafted request to exploit this flaw and read arbitrary data from the internal database of an affected device. The attack requires valid user credentials on the device and network access to the management interface. Cisco released patched versions 12.6(2) ES08 and 15.0(1) SU2 to address this issue. No public exploits or active exploitation in the wild has been documented.

Affected products

  • Cisco Unified Intelligence Center Earlier than 12.6, 12.6 before 12.6(2) ES08, 15.0 before 15.0(1) SU2

Timeline

  • 2026-08-19: disclosed

References