Exploited in the Wild: Maximum CVSS 10 SD-WAN Flaw (CVE-2026-20182) Grants Admin Control
ID: 0f9fe7f2-cbce-5578-ba01-1b24ad975be1
STIX ID: report--0f9fe7f2-cbce-5578-ba01-1b24ad975be1
Feed Name: securityonline.info
Threat Score
**Cisco Talos warning:** Active exploitation of critical Cisco Catalyst SD-WAN vulnerabilities—chiefly CVE-2026-20182 (CVSS 10)—allows unauthenticated remote attackers to gain administrative access and manipulate NETCONF configurations; activity attributed to UAT-8616 and multiple other clusters has resulted in AI-assisted implants, credential-theft tooling, XMRig cryptominers, and persistent web shells, and Cisco has released fixes that should be applied immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
