
Cisco BroadWorks XXE Flaw Allows Unauthenticated Remote File Disclosure
Cisco has released security updates for a high-severity vulnerability in Cisco BroadWorks that could allow unauthenticated remote attackers to disclose sensitive configuration information from affected systems. Tracked as CVE-2026-20320, the issue is an out-of-band blind XML External Entity (XXE) injection flaw in the Open Client Interface (OCI) XML parser and carries a CVSS score of […]
The post Cisco BroadWorks XXE Flaw Allows Unauthenticated Remote File Disclosure appeared first on Cyber Security News.