Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3186 articles · 183331 vulns · 37/41 feeds (7d)
← Back to list
7.5
CVE-2026-20157
cis · roomos

Cisco RoomOS Security Hardening Release - Missing Encryption Vulnerabilities

Description

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20157 are related to missing encryption that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-311.

Affected Products

VendorProductVersions
cisroomosRoomOS 10.11.2.2, RoomOS 10.15.2.2, RoomOS 11.5.4.6, RoomOS 11.5.2.4, RoomOS 10.8.2.5, RoomOS 10.11.5.2, RoomOS 10.11.3.0, RoomOS 10.15.5.3, RoomOS 10.19.2.2, RoomOS 11.1.3.1, RoomOS 10.11.6.0, RoomOS 10.19.3.0, RoomOS 10.19.4.2, RoomOS 10.3.2.4, RoomOS 10.3.4.0, RoomOS 10.15.3.0, RoomOS 11.1.4.1, RoomOS 11.14.2.3, RoomOS 11.1.2.4, RoomOS 10.8.3.1, RoomOS 11.14.2.1, RoomOS 10.3.3.0, RoomOS 10.8.4.0, RoomOS 10.15.4.1, RoomOS 10.19.5.6, RoomOS 10.11.4.1, RoomOS 11.9.3.1, RoomOS 11.5.3.3, RoomOS 10.3.2.0, RoomOS 11.9.2.4, RoomOS 11.14.3.0, RoomOS 11.17.2.2, RoomOS 11.14.4.0, RoomOS 10.19 StepUpg, RoomOS 11.17.3.0, RoomOS 11.20.2.3, RoomOS 11.14.5.0, RoomOS 11.17.4.0, RoomOS 11.20.3.0, RoomOS 11.23.1.6, RoomOS 11.23.1.8, RoomOS 11.24.1.5, RoomOS 11.24.2.4, RoomOS 11.24.3.0, RoomOS 11.24.4.1, RoomOS 11.27.2.0, RoomOS 11.28.1.3, RoomOS 11.27.3.0, RoomOS 11.31.1.5, RoomOS 11.27.4.0, RoomOS 11.32.2.1, RoomOS 11.33.1.7, RoomOS 26.0.1.2, RoomOS 11.34.1.2, RoomOS 11.32.3.0, RoomOS 11.27.5.0, RoomOS 11.32.4.0, RoomOS 26.1.1.5, RoomOS 11.35.1.2, RoomOS 26.2.2.2, RoomOS 11.32.5.1, RoomOS 26.4.1.6, RoomOS 26.4.1.4, RoomOS 26.3.1.3, RoomOS 11.36.1.1, RoomOS 11.37.1.0, RoomOS 26.5.2.0, RoomOS 11.38.1.1

References

  • https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-roomos-AqNMbEq

Related News (3 articles)

Tier B
CERT-FR18d ago
Multiples vulnérabilités dans Cisco RoomOS (16 juillet 2026)
→ No new info (linked only)
Tier C
VulDB18d ago
CVE-2026-20157 | Cisco RoomOS up to 26.5.2.0 missing encryption
→ No new info (linked only)
Tier A
Cisco Security18d ago
Cisco RoomOS Security Hardening Release: July 2026
→ No new info (linked only)
CVSS 3.17.5 HIGH
VectorCVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited❌ No
CWECWE-311
PublishedJul 15, 2026
Last enriched18d agov2
Tags
missing encryption
Trending Score6
Source articles3
Independent3
Info Completeness8/14
Missing: epss, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

MEDIUMCVE-2026-20316
Cisco Secure Firewall Management Center Software Static Credential Vulnerability
Trending: 78
HIGHCVE-2026-20244
ClamAV DMG File Processing Denial of Service Vulnerability
Trending: 6
HIGHCVE-2026-20215
ClamAV 7Zip File Format Processing Out-of-Bounds Memory Corruption Vulnerability
Trending: 6
HIGHCVE-2026-20216
ClamAV InstallShield File Format Processing Resource Exhaustion Vulnerability
Trending: 5
HIGHCVE-2026-20243
ClamAV ALZ Archive Processing Denial of Service Vulnerability
Trending: 5

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jul 15, 2026
Discovered by ZDM
Jul 15, 2026
Updated: tags
Jul 15, 2026

Version History

v2
Last enriched 18d ago
v2Tier C18d ago

Updated exploit availability to false, added affected version RoomOS 26.5.2.0, and added new tag 'missing encryption'.

tags
via VulDB
v118d ago

Initial creation