CYBER CODE RED

Get real-time updates on Telegram

P5Verified

CVE-2025-20329: telepresence collaboration endpoint from 9.0.0.0 (inclusive), through 9.15.18.5 (inclusive); +2 more affected products

CVE-2025-20329. CVSS 3.1 base score 4.9 (MEDIUM, Vendor/CNA). EPSS 0.00364 (percentile 0.28042), scored 2026-10-06.

Affected technology

telepresence collaboration endpoint · from 9.0.0.0 (inclusive), through 9.15.18.5 (inclusive)
cisco

roomos · from 10.0.0.0 (inclusive), before 11.32.2.1 (exclusive)
cisco

Cisco RoomOS Software · RoomOS 10.11.2.2, RoomOS 10.15.2.2, RoomOS 11.5.4.6, RoomOS 11.5.2.4, RoomOS 10.8.2.5, RoomOS 10.11.5.2, RoomOS 10.11.3.0, RoomOS 10.15.5.3, RoomOS 10.19.2.2, RoomOS 11.1.3.1, RoomOS 10.11.6.0, RoomOS 10.19.3.0, RoomOS 10.19.4.2, RoomOS 10.3.2.4, RoomOS 10.3.4.0, RoomOS 10.15.3.0, RoomOS 11.1.4.1, RoomOS 11.14.2.3, RoomOS 11.1.2.4, RoomOS 10.8.3.1, RoomOS 11.14.2.1, RoomOS 10.3.3.0, RoomOS 10.8.4.0, RoomOS 10.15.4.1, RoomOS 10.19.5.6, RoomOS 10.11.4.1, RoomOS 11.9.3.1, RoomOS 11.5.3.3, RoomOS 10.3.2.0, RoomOS 11.9.2.4, RoomOS 11.14.3.0, RoomOS 11.17.2.2, RoomOS 11.14.4.0, RoomOS 10.19 StepUpg, RoomOS 11.17.3.0, RoomOS 11.20.2.3, RoomOS 11.14.5.0, RoomOS 11.17.4.0, RoomOS 11.20.3.0, RoomOS 11.23.1.6, RoomOS 11.23.1.8, RoomOS 11.24.1.5, RoomOS 11.24.2.4, RoomOS 11.24.3.0, RoomOS 11.24.4.1, RoomOS 11.27.2.0, RoomOS 11.28.1.3, RoomOS 11.27.3.0
Cisco

Component: Not specified by the source

Attack conditions (Vendor/CNA, CVSS 3.1): Network (remote) · High privileges required · No user interaction required

What an attacker can do

An authenticated, remote attacker could view sensitive information in clear text on an affected system. Vendor/CNA’s CVSS 3.1 assessment (base score 4.9/10) rates confidentiality impact as high; integrity and availability impact as none.

Published

CWE
CWE-532
CCR priority
19.7 /100 (P5)
CVSS 3.1
4.9 /10 · CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N · Vendor/CNA
EPSS
0.00364 · percentile 0.28154 · 2026-10-08
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2025-20329.html