<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>IP Phone 7800 - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/products/ip-phone-7800/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Thu, 03 Sep 2026 10:52:08 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/products/ip-phone-7800/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Cisco Releases Patches for Critical Infrastructure Vulnerabilities</title><link>https://feed.craftedsignal.io/briefs/2026-09-cisco-security-advisories/</link><pubDate>Thu, 03 Sep 2026 10:52:08 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-cisco-security-advisories/</guid><description>Cisco has issued security advisories for unpatched S/MIME vulnerabilities in Secure Email and critical RCE and authentication bypass flaws across its IOS XR, Nexus, and VoIP phone product lines.</description><content:encoded><![CDATA[<p>Cisco has released a series of security advisories detailing multiple vulnerabilities across its enterprise product portfolio. Two unpatched, publicly disclosed medium-severity vulnerabilities (CVE-2026-20354 and CVE-2026-20355) affect the S/MIME decryption functionality in Secure Email running AsyncOS version 16.5.0 or earlier. These flaws permit man-in-the-middle (MitM) attacks by failing to properly validate message integrity, potentially exposing encrypted email content.</p>
<p>Simultaneously, Cisco has addressed several critical-severity vulnerabilities in networking and communication hardware. This includes remote code execution (RCE) and authentication bypass flaws in IOS XR and Nexus 9000 series switches (CVE-2026-20274, CVE-2026-20279, CVE-2026-20212). The Nexus 9000 vulnerability is particularly severe, allowing unauthenticated remote attackers to execute code with root privileges by connecting to accessible TCP ports. Additionally, a high-severity denial-of-service (DoS) vulnerability (CVE-2026-20281) affects multiple models of Cisco Desk and IP phones using the Session Initiation Protocol (SIP). While no active exploitation is currently observed, the public disclosure of these flaws increases the risk to enterprise networks.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of these vulnerabilities could lead to full system compromise of core networking equipment, unauthorized access to sensitive internal email communications, and significant denial-of-service impacts on telecommunications hardware. These products are foundational in enterprise environments, and compromise could facilitate lateral movement, data exfiltration, and operational disruption.</p>
<h2 id="recommendation">Recommendation</h2>
<ol>
<li>Prioritize the application of vendor-provided patches for all affected Cisco hardware, specifically targeting critical-severity CVE-2026-20274, CVE-2026-20279, and CVE-2026-20212.</li>
<li>Implement strict network access controls to limit exposure of management interfaces and TCP ports on Nexus 9000 series switches to trusted internal networks only.</li>
<li>Monitor for unusual traffic patterns between email gateways, as the unpatched S/MIME flaws in Secure Email may allow for interception of encrypted traffic.</li>
<li>Review the official Cisco security advisories for the specific patch release versions associated with each listed CVE to ensure comprehensive remediation.</li>
</ol>
]]></content:encoded><category domain="severity">high</category><category domain="type">threat</category><category>vulnerability</category><category>network-security</category><category>patch-management</category><category>informational</category></item></channel></rss>