Threat Advisory

Cisco RoomOS Flaw Lets Attackers Read Sensitive Information

Threat: Vulnerability
Targeted Region: Global
Targeted Sector: Technology & IT
Criticality: Medium
[subscribe_to_unlock_form]

EXECUTIVE SUMMARY:

CVE-2026-20289 with a CVSS score of 5.7 is a vulnerability in the logging subsystem of Cisco RoomOS that could allow an authenticated, local attacker with low privileges to access sensitive information by enabling a specific logging level and then collecting the system logs. A successful exploit could allow the attacker to view sensitive information like user login credentials. The affected product is Cisco RoomOS if extended logging was enabled, which is not enabled by default. This vulnerability affects.39.1.3 in on-premises operation, future release in cloud-aware operation, and RoomOS June 2026 (26.7.1.12). The flaw type is an information disclosure vulnerability due to the logging of sensitive information. It can be exploited via a network attack vector with low privileges required. The business impact could be significant as attackers may gain unauthorized access to sensitive user data.

RECOMMENDATION:

We recommend you to refer this link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-infodisc-qBXjfmWm?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20RoomOS%20Logging%20Subsystem%20Information%20Disclosure%20Vulnerability%26vs_k=1[/subscribe_to_unlock_form]

EXECUTIVE SUMMARY:

CVE-2026-20289 with a CVSS score of 5.7 is a vulnerability in the logging subsystem of Cisco RoomOS that could allow an authenticated, local attacker with low privileges to access sensitive information by enabling a specific logging level and then collecting the system logs. A successful exploit could allow the attacker to view sensitive information like user login credentials. The affected product is Cisco RoomOS if extended logging was enabled, which is not enabled by default. This vulnerability affects.39.1.3 in on-premises operation, future release in cloud-aware operation, and RoomOS June 2026 (26.7.1.12). The flaw type is an information disclosure vulnerability due to the logging of sensitive information. It can be exploited via a network attack vector with low privileges required. The business impact could be significant as attackers may gain unauthorized access to sensitive user data.

RECOMMENDATION:

We recommend you to refer this link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-infodisc-qBXjfmWm?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20RoomOS%20Logging%20Subsystem%20Information%20Disclosure%20Vulnerability%26vs_k=1[emaillocker id="1283"]

REFERENCES:

The following reports contain further technical details:

[/emaillocker]
crossmenu