Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3186 articles · 183331 vulns · 37/41 feeds (7d)
← Back to list
8.1
CVE-2026-20156EXPLOITED
cis · roomos

Cisco RoomOS Security Hardening Release - Buffer Management Vulnerabilities

Description

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20156 are related to improper restriction of operations within the bounds of a memory buffer that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-119.

Affected Products

VendorProductVersions
cisroomosRoomOS 10.11.2.2, RoomOS 10.15.2.2, RoomOS 11.5.4.6, RoomOS 11.5.2.4, RoomOS 10.8.2.5, RoomOS 10.11.5.2, RoomOS 10.11.3.0, RoomOS 10.15.5.3, RoomOS 10.19.2.2, RoomOS 11.1.3.1, RoomOS 10.11.6.0, RoomOS 10.19.3.0, RoomOS 10.19.4.2, RoomOS 10.3.2.4, RoomOS 10.3.4.0, RoomOS 10.15.3.0, RoomOS 11.1.4.1, RoomOS 11.14.2.3, RoomOS 11.1.2.4, RoomOS 10.8.3.1, RoomOS 11.14.2.1, RoomOS 10.3.3.0, RoomOS 10.8.4.0, RoomOS 10.15.4.1, RoomOS 10.19.5.6, RoomOS 10.11.4.1, RoomOS 11.9.3.1, RoomOS 11.5.3.3, RoomOS 10.3.2.0, RoomOS 11.9.2.4, RoomOS 11.14.3.0, RoomOS 11.17.2.2, RoomOS 11.14.4.0, RoomOS 10.19 StepUpg, RoomOS 11.17.3.0, RoomOS 11.20.2.3, RoomOS 11.14.5.0, RoomOS 11.17.4.0, RoomOS 11.20.3.0, RoomOS 11.23.1.6, RoomOS 11.23.1.8, RoomOS 11.24.1.5, RoomOS 11.24.2.4, RoomOS 11.24.3.0, RoomOS 11.24.4.1, RoomOS 11.27.2.0, RoomOS 11.28.1.3, RoomOS 11.27.3.0, RoomOS 11.31.1.5, RoomOS 11.27.4.0, RoomOS 11.32.2.1, RoomOS 11.33.1.7, RoomOS 26.0.1.2, RoomOS 11.34.1.2, RoomOS 11.32.3.0, RoomOS 11.27.5.0, RoomOS 11.32.4.0, RoomOS 26.1.1.5, RoomOS 11.35.1.2, RoomOS 26.2.2.2, RoomOS 11.32.5.1, RoomOS 26.4.1.6, RoomOS 26.4.1.4, RoomOS 26.3.1.3, RoomOS 11.36.1.1, RoomOS 11.37.1.0, RoomOS 26.5.2.0, RoomOS 11.38.1.1

References

  • https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-roomos-AqNMbEq

Related News (3 articles)

Tier B
CERT-FR18d ago
Multiples vulnérabilités dans Cisco RoomOS (16 juillet 2026)
→ No new info (linked only)
Tier C
VulDB18d ago
CVE-2026-20156 | Cisco RoomOS up to 26.5.2.0 Memory Buffer memory corruption
→ No new info (linked only)
Tier A
Cisco Security18d ago
Cisco RoomOS Security Hardening Release: July 2026
→ No new info (linked only)
CVSS 3.18.1 HIGH
VectorCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited✅ Yes
CWECWE-119
PublishedJul 15, 2026
Last enriched18d agov2
Trending Score4
Source articles3
Independent3
Info Completeness8/14
Missing: epss, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

MEDIUMCVE-2026-20316
Cisco Secure Firewall Management Center Software Static Credential Vulnerability
Trending: 78
HIGHCVE-2026-20157
Cisco RoomOS Security Hardening Release - Missing Encryption Vulnerabilities
Trending: 6
HIGHCVE-2026-20244
ClamAV DMG File Processing Denial of Service Vulnerability
Trending: 6
HIGHCVE-2026-20215
ClamAV 7Zip File Format Processing Out-of-Bounds Memory Corruption Vulnerability
Trending: 6
HIGHCVE-2026-20216
ClamAV InstallShield File Format Processing Resource Exhaustion Vulnerability
Trending: 5

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jul 15, 2026
Discovered by ZDM
Jul 15, 2026
Updated: severity, activelyExploited
Jul 15, 2026
Actively Exploited
Jul 15, 2026

Version History

v2
Last enriched 18d ago
v2Tier C18d ago

Updated severity to CRITICAL and marked the vulnerability as actively exploited.

severityactivelyExploited
via VulDB
v118d ago

Initial creation