Critical Authentication Bypass Vulnerability in Cisco Catalyst SD-WAN Exploited
ID: 5e2bae09-acb3-525a-9643-32c25b6b953e
STIX ID: report--5e2bae09-acb3-525a-9643-32c25b6b953e
Feed Name: ThreatCluster
Threat Score
**Executive Summary:** A critical authentication bypass (CVE-2026-20182) in the Cisco Catalyst SD-WAN Controller's vdaemon service (CVSS 10.0) is being actively exploited by threat actor UAT-8616 to gain unauthorized privileged access, enabling modification of NETCONF configurations and SSH key injection; Cisco has published an advisory and urges immediate patching.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
