Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4344 articles · 196297 vulns · 36/41 feeds (7d)
← Back to list
6.1
CVE-2026-20302
Cisco · Cisco RoomOS Software

Cisco RoomOS Stack Overflow Vulnerability

Description

A vulnerability in the USB driver of Cisco RoomOS could allow an unauthenticated, local attacker with physical access to the USB port on an affected device to execute arbitrary code with root privileges. This vulnerability is due to insufficient boundary checks for specific data that is provided through the USB driver. An attacker could exploit this vulnerability by connecting a malicious USB device to an affected device. A successful exploit could allow the attacker to cause a buffer overflow condition on the affected system and execute arbitrary code with root privileges.

Affected Products

VendorProductVersions
CiscoCisco RoomOS SoftwareRoomOS 10.11.2.2, RoomOS 10.15.2.2, RoomOS 11.5.4.6, RoomOS 11.5.2.4, RoomOS 10.8.2.5, RoomOS 10.11.5.2, RoomOS 10.11.3.0, RoomOS 10.15.5.3, RoomOS 10.19.2.2, RoomOS 11.1.3.1, RoomOS 10.11.6.0, RoomOS 10.19.3.0, RoomOS 10.19.4.2, RoomOS 10.3.2.4, RoomOS 10.3.4.0, RoomOS 10.15.3.0, RoomOS 11.1.4.1, RoomOS 11.14.2.3, RoomOS 11.1.2.4, RoomOS 10.8.3.1, RoomOS 11.14.2.1, RoomOS 10.3.3.0, RoomOS 10.8.4.0, RoomOS 10.15.4.1, RoomOS 10.19.5.6, RoomOS 10.11.4.1, RoomOS 11.9.3.1, RoomOS 11.5.3.3, RoomOS 10.3.2.0, RoomOS 11.9.2.4, RoomOS 11.14.3.0, RoomOS 11.17.2.2, RoomOS 11.14.4.0, RoomOS 10.19 StepUpg, RoomOS 11.17.3.0, RoomOS 11.20.2.3, RoomOS 11.14.5.0, RoomOS 11.17.4.0, RoomOS 11.20.3.0, RoomOS 11.23.1.6, RoomOS 11.23.1.8, RoomOS 11.24.1.5, RoomOS 11.24.2.4, RoomOS 11.24.3.0, RoomOS 11.24.4.1, RoomOS 11.27.2.0, RoomOS 11.28.1.3, RoomOS 11.27.3.0, RoomOS 11.31.1.5, RoomOS 11.27.4.0, RoomOS 11.32.2.1, RoomOS 11.33.1.7, RoomOS 26.0.1.2, RoomOS 11.34.1.2, RoomOS 11.32.3.0, RoomOS 11.27.5.0, RoomOS 11.32.4.0, RoomOS 26.1.1.5, RoomOS 11.35.1.2, RoomOS 26.2.2.2, RoomOS 11.32.5.1, RoomOS 26.4.1.6, RoomOS 26.4.1.4, RoomOS 26.3.1.3, RoomOS 11.36.1.1, RoomOS 11.37.1.0, RoomOS 26.5.2.0, RoomOS 26.5.2.2, RoomOS 26.6.1.4, RoomOS 11.38.1.1, RoomOS 11.32.6.0, RoomOS 11.39.1.1

References

  • https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-bof-vTMANZgu

Related News (1 articles)

Tier C
VulDB4d ago
CVE-2026-20302 | Cisco RoomOS up to 26.6.1.4 USB driver buffer overflow
→ No new info (linked only)
CVSS 3.16.1 MEDIUM
VectorCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
CISA KEV❌ No
Actively exploited❌ No
CWECWE-120
PublishedAug 19, 2026
Last enriched4d ago
Trending Score16
Source articles1
Independent1
Info Completeness8/14
Missing: epss, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-20338
ClamAV ZIP File Format Processing Memory Corruption Vulnerability
Trending: 31
HIGHCVE-2026-20337
ClamAV ZIP File Format Processing Memory Corruption Vulnerability
Trending: 31
HIGHCVE-2026-20320
CVE-2026-20320: A vulnerability in the Open Client Interface (OCI) XML Parser of Cisco BroadWorks could allow an unauthenticated, remote
Trending: 30
MEDIUMCVE-2026-20232
Cisco Industrial Ethernet 1000 Series Switches Stored Cross-Site Scripting Vulnerability
Trending: 21
HIGHCVE-2026-20339
ClamAV PESpin File Format Processing Integer Overflow Vulnerability
Trending: 15

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
Aug 19, 2026
Discovered by ZDM
Aug 19, 2026