Cisco Resolves Severe Privilege Elevation Vulnerability in Meeting Organization (CVSS 9.
Cisco Resolves Severe Privilege Elevation Vulnerability in Meeting Organization (CVSS 9.9)
Cisco has deployed software patches to rectify a critical security vulnerability affecting Meeting Organization that might enable a remote, authorized intruder to obtain admin rights on vulnerable versions.
The flaw, indexed as CVE-2025-20156, comes with a CVSS rating of 9.9 out of 10.0. It is identified as a privilege elevation weakness in the REST Application Programming Interface (API) of Cisco Meeting Organization.
“This
Andy Curtis is an award-winning security consultant, researcher and public speaker. He has been working in the computer security industry since the early 1990s, having been employed by state and federal government, leading healthcare and banking providers across three continents. He has given talks about computer security for some of the world’s largest companies, worked with law enforcement agencies on investigations into hacking groups, and is a regular voice on TV and radio explaining IT security threats.