logo

Critical Authentication Bypass Vulnerability in Cisco Catalyst SD-WAN Exploited

ID: 5e2bae09-acb3-525a-9643-32c25b6b953e

STIX ID: report--5e2bae09-acb3-525a-9643-32c25b6b953e

Feed Name: ThreatCluster

Threat Score
92/100

Date Published: 2026-05-14

Date Updated: 2026-05-14

...
...

**Executive Summary:** A critical authentication bypass (CVE-2026-20182) in the Cisco Catalyst SD-WAN Controller's vdaemon service (CVSS 10.0) is being actively exploited by threat actor UAT-8616 to gain unauthorized privileged access, enabling modification of NETCONF configurations and SSH key injection; Cisco has published an advisory and urges immediate patching.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.