Cisco Unified Intelligence Center SQL Injection Vulnerability
A vulnerability in the web-based management interface of Cisco Unified Intelligence Center could allow an authenticated, local attacker to perform a blind SQL injection attack against an affected device. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted request to the web-based management interface. A successful exploit could allow the attacker to read the contents of the internal database of an affected device. To exploit this vulnerability, the attacker must have valid user credentials on the affected device. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cuic-sql-inject-2qbfWSm5 Security Impact Rating: Medium CVE: CVE-2026-20327
CSIRTS triage
- What
- Blind SQL injection in the web-based management interface allows authenticated local attackers to read internal database contents.
- Who is affected
- Authenticated users of Cisco Unified Intelligence Center web interface are affected.
- Urgency
- Medium urgency; requires valid credentials but allows database enumeration.
- Action
- Apply Cisco Unified Intelligence Center software updates addressing CVE-2026-20327.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch Unified Intelligence Center
Get an email when a new Unified Intelligence Center advisory drops — max one per day, one-click unsubscribe.
Details
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Low exploitation riskCVE-2026-203270.21% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 11% of all EPSS-scored CVEs.
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-20327 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- medium[NEW] [medium] Cisco Unified Intelligence Center: Vulnerability enables SQL injectioncert-bund
- mediumCVE-2026-20327: A vulnerability in the web-based management interface of Cisco Unified Intelligence Center cou…nvd
- criticalCisco Advance Notification for Publication of August 19, 2026, Security Advisoriescisco-psirt
More from Cisco Security Advisories
- criticalCisco Crosswork Security Hardening Release: August 20262026-08-21
- criticalCisco Advance Notification for Publication of August 19, 2026, Security Advisories2026-08-19
- mediumCisco Packaged Contact Center Enterprise and Cisco Unified Contact Center Enterprise Server-Side Request Forge…2026-08-19
- highCisco Industrial Ethernet 1000 Series Switches Denial of Service Vulnerability2026-08-19
- criticalCisco Secure Workload Software Security Hardening Release: August 20262026-08-19