logo

How to find Cisco Catalyst SD-WAN installations on your network

ID: d86113ff-ac57-5e57-8e64-072dbf60242e

STIX ID: report--d86113ff-ac57-5e57-8e64-072dbf60242e

Feed Name: runZero Blog

Threat Score
90/100

Date Published: 2026-02-25

Date Updated: 2026-04-29

Author: Matthew Kienow

...
...

Cisco disclosed a critical vulnerability (CVE-2026-20127) in Catalyst SD-WAN Controller (vSmart) and Manager (vManage) where crafted requests can bypass peering authentication, granting remote unauthenticated attackers administrative access and NETCONF control over the SD‑WAN fabric. The flaw is rated CVSS 10.0, is reported to be actively exploited, affects multiple on‑prem and Cisco‑hosted releases, and Cisco has published fixed versions and upgrade guidance to mitigate the issue.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.