logo

Cisco discloses second exploited SD-WAN vulnerability in two weeks (CVE-2026-20262)

ID: 6d0ba55a-8fbe-5fb8-aaed-692a2b6dc070

STIX ID: report--6d0ba55a-8fbe-5fb8-aaed-692a2b6dc070

Feed Name: Help Net Security

Threat Score
75/100

Date Published: 2026-06-16

Date Updated: 2026-06-16

Author: Zeljka Zorz

...
...

Cisco disclosed a path traversal vulnerability (CVE-2026-20262) in Catalyst SD-WAN Manager that attackers have exploited to create/overwrite files and deploy malicious .war web applications via the WildFly server; Cisco has released fixes, provided indicators of compromise for log investigation, and CISA added the vulnerability to its Known Exploited Vulnerabilities catalog with a mandated remediation deadline.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.