CVE-2026-20182: Cisco Catalyst SD-WAN Auth Bypass Added to CISA KEV
ID: d5f423b5-6096-5994-8b16-0f67d0509d05
STIX ID: report--d5f423b5-6096-5994-8b16-0f67d0509d05
Feed Name: SOCRadar Blog
Threat Score
Cisco disclosed CVE-2026-20182, a CVSS 10.0 authentication-bypass in Catalyst SD-WAN Controller/Manager allowing remote, unauthenticated attackers to gain high-privileged administrative access; the flaw is actively exploited (attributed to UAT-8616), has been added to CISA’s KEV, has no available workarounds, and Cisco recommends immediate upgrades and compromise assessments.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
