Description
A vulnerability in the logging subsystem of Cisco RoomOS could allow an authenticated, local attacker with low privileges to access sensitive information.

This vulnerability is due to the logging of sensitive information. An attacker could exploit this vulnerability by enabling a specific logging level and then collecting the system logs. A successful exploit could allow the attacker to view sensitive information like user login credentials.
Published: 2026-08-05
Score: 5.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A flaw in the logging subsystem of Cisco RoomOS allows an authenticated local attacker with low privileges to enable a high‑level logging mode and obtain system logs that contain sensitive data such as user login credentials. The weakness corresponds to CWE‑532, the logging of sensitive information. As a result, confidentiality is compromised, but integrity and availability are not directly affected.

Affected Systems

The vulnerability affects Cisco RoomOS Software. No specific version numbers were enumerated in the advisory, so all installations of this software are potentially impacted until a patch is applied.

Risk and Exploitability

The CVSS score of 5.7 indicates a moderate severity. Because the exploit requires local authentication and low privileges, the attack surface is limited to users who can log on to the device. The EPSS score is not available, and the vulnerability is not listed in the CISA KEV catalog, suggesting that large‑scale exploitation has not been observed yet. Nevertheless, an attacker with local access could read logged credentials, potentially enabling credential theft or further lateral movement within the network.

Generated by OpenCVE AI on August 5, 2026 at 18:37 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Plan and deploy any Cisco RoomOS software updates that address the information‑disclosure issue.
  • Verify that logging configuration does not include sensitive data; disable high‑level logging or remove credentials from log messages.
  • Limit local user privileges and enforce the principle of least privilege to reduce the chance that a low‑privileged attacker can enable the vulnerable logging level.

Generated by OpenCVE AI on August 5, 2026 at 18:37 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 17 Aug 2026 13:00:00 +0000

Type Values Removed Values Added
First Time appeared Cisco roomos
Cisco roomos Cloud
CPEs cpe:2.3:o:cisco:roomos:*:*:*:*:*:*:*:*
cpe:2.3:o:cisco:roomos_cloud:*:*:*:*:*:*:*:*
Vendors & Products Cisco roomos
Cisco roomos Cloud

Wed, 05 Aug 2026 21:15:00 +0000

Type Values Removed Values Added
First Time appeared Cisco
Cisco cisco Roomos Software
Vendors & Products Cisco
Cisco cisco Roomos Software

Wed, 05 Aug 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 05 Aug 2026 17:00:00 +0000

Type Values Removed Values Added
Description A vulnerability in the logging subsystem of Cisco RoomOS could allow an authenticated, local attacker with low privileges to access sensitive information. This vulnerability is due to the logging of sensitive information. An attacker could exploit this vulnerability by enabling a specific logging level and then collecting the system logs. A successful exploit could allow the attacker to view sensitive information like user login credentials.
Title Cisco RoomOS Logging Subsystem Information Disclosure Vulnerability
Weaknesses CWE-532
References
Metrics cvssV3_1

{'score': 5.7, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N'}


Subscriptions

Cisco Cisco Roomos Software Roomos Roomos Cloud
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2026-08-05T17:45:12.362Z

Reserved: 2025-10-08T11:59:15.405Z

Link: CVE-2026-20289

cve-icon Vulnrichment

Updated: 2026-08-05T17:38:49.508Z

cve-icon NVD

Status : Analyzed

Published: 2026-08-05T17:16:49.733

Modified: 2026-08-17T12:49:55.497

Link: CVE-2026-20289

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-05T21:00:05Z

Weaknesses
  • CWE-532

    Insertion of Sensitive Information into Log File