Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4358 articles · 196335 vulns · 36/41 feeds (7d)
← Back to list
6.1
CVE-2026-20302
Cisco · Cisco RoomOS Software

Cisco RoomOS Stack Overflow Vulnerability

Description

A vulnerability in the USB driver of Cisco RoomOS could allow an unauthenticated, local attacker with physical access to the USB port on an affected device to execute arbitrary code with root privileges. This vulnerability is due to insufficient boundary checks for specific data that is provided through the USB driver. An attacker could exploit this vulnerability by connecting a malicious USB device to an affected device. A successful exploit could allow the attacker to cause a buffer overflow condition on the affected system and execute arbitrary code with root privileges.

Affected Products

VendorProductVersions
CiscoCisco RoomOS SoftwareRoomOS 10.11.2.2, RoomOS 10.15.2.2, RoomOS 11.5.4.6, RoomOS 11.5.2.4, RoomOS 10.8.2.5, RoomOS 10.11.5.2, RoomOS 10.11.3.0, RoomOS 10.15.5.3, RoomOS 10.19.2.2, RoomOS 11.1.3.1, RoomOS 10.11.6.0, RoomOS 10.19.3.0, RoomOS 10.19.4.2, RoomOS 10.3.2.4, RoomOS 10.3.4.0, RoomOS 10.15.3.0, RoomOS 11.1.4.1, RoomOS 11.14.2.3, RoomOS 11.1.2.4, RoomOS 10.8.3.1, RoomOS 11.14.2.1, RoomOS 10.3.3.0, RoomOS 10.8.4.0, RoomOS 10.15.4.1, RoomOS 10.19.5.6, RoomOS 10.11.4.1, RoomOS 11.9.3.1, RoomOS 11.5.3.3, RoomOS 10.3.2.0, RoomOS 11.9.2.4, RoomOS 11.14.3.0, RoomOS 11.17.2.2, RoomOS 11.14.4.0, RoomOS 10.19 StepUpg, RoomOS 11.17.3.0, RoomOS 11.20.2.3, RoomOS 11.14.5.0, RoomOS 11.17.4.0, RoomOS 11.20.3.0, RoomOS 11.23.1.6, RoomOS 11.23.1.8, RoomOS 11.24.1.5, RoomOS 11.24.2.4, RoomOS 11.24.3.0, RoomOS 11.24.4.1, RoomOS 11.27.2.0, RoomOS 11.28.1.3, RoomOS 11.27.3.0, RoomOS 11.31.1.5, RoomOS 11.27.4.0, RoomOS 11.32.2.1, RoomOS 11.33.1.7, RoomOS 26.0.1.2, RoomOS 11.34.1.2, RoomOS 11.32.3.0, RoomOS 11.27.5.0, RoomOS 11.32.4.0, RoomOS 26.1.1.5, RoomOS 11.35.1.2, RoomOS 26.2.2.2, RoomOS 11.32.5.1, RoomOS 26.4.1.6, RoomOS 26.4.1.4, RoomOS 26.3.1.3, RoomOS 11.36.1.1, RoomOS 11.37.1.0, RoomOS 26.5.2.0, RoomOS 26.5.2.2, RoomOS 26.6.1.4, RoomOS 11.38.1.1, RoomOS 11.32.6.0, RoomOS 11.39.1.1

References

  • https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-bof-vTMANZgu

Related News (1 articles)

Tier C
VulDB4d ago
CVE-2026-20302 | Cisco RoomOS up to 26.6.1.4 USB driver buffer overflow
→ No new info (linked only)
CVSS 3.16.1 MEDIUM
VectorCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
CISA KEV❌ No
Actively exploited❌ No
CWECWE-120
PublishedAug 19, 2026
Last enriched4d ago
Trending Score15
Source articles1
Independent1
Info Completeness8/14
Missing: epss, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-20338
ClamAV ZIP File Format Processing Memory Corruption Vulnerability
Trending: 30
HIGHCVE-2026-20337
ClamAV ZIP File Format Processing Memory Corruption Vulnerability
Trending: 30
HIGHCVE-2026-20320
CVE-2026-20320: A vulnerability in the Open Client Interface (OCI) XML Parser of Cisco BroadWorks could allow an unauthenticated, remote
Trending: 29
MEDIUMCVE-2026-20232
Cisco Industrial Ethernet 1000 Series Switches Stored Cross-Site Scripting Vulnerability
Trending: 21
CRITICALCVE-2026-20303
Cisco Catalyst SD-WAN Security Hardening Release - Input Validation Vulnerabilities
Trending: 15

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
Aug 19, 2026
Discovered by ZDM
Aug 19, 2026