logo

CVE-2026-20182: Cisco Catalyst SD-WAN Auth Bypass Added to CISA KEV

ID: d5f423b5-6096-5994-8b16-0f67d0509d05

STIX ID: report--d5f423b5-6096-5994-8b16-0f67d0509d05

Feed Name: SOCRadar Blog

Threat Score
92/100

Date Published: 2026-05-15

Date Updated: 2026-05-15

Author: Ameer Owda

...
...

Cisco disclosed CVE-2026-20182, a CVSS 10.0 authentication-bypass in Catalyst SD-WAN Controller/Manager allowing remote, unauthenticated attackers to gain high-privileged administrative access; the flaw is actively exploited (attributed to UAT-8616), has been added to CISA’s KEV, has no available workarounds, and Cisco recommends immediate upgrades and compromise assessments.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.