logo

U.S. CISA adds a flaw in Cisco Catalyst SD-WAN  to its Known Exploited Vulnerabilities catalog

ID: 67aff8d1-dfc5-59f6-a454-e0b7c59d41f7

STIX ID: report--67aff8d1-dfc5-59f6-a454-e0b7c59d41f7

Feed Name: Security Affairs

Threat Score
90/100

Date Published: 2026-05-14

Date Updated: 2026-05-14

Author: Pierluigi Paganini

...
...

U.S. CISA has added CVE-2026-20182 (CVSS 10.0), an authentication bypass in Cisco Catalyst SD-WAN Controller (vSmart) and Manager (vManage), to its Known Exploited Vulnerabilities catalog. The flaw in the vdaemon DTLS service (UDP 12346) allows an unauthenticated remote attacker to impersonate a trusted peer, obtain a high-privilege internal account, inject SSH keys, access NETCONF (TCP 830), and alter SD-WAN network configurations; Cisco reported limited in-the-wild exploitation and urges urgent upgrades with a federal remediation deadline of May 17, 2026.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.