logo

Cisco Releases Security Updates for Actively Exploited SD-WAN Manager Flaw

ID: bed5359e-5fd3-5d0c-81d1-c5ae268fc527

STIX ID: report--bed5359e-5fd3-5d0c-81d1-c5ae268fc527

Feed Name: The Hacker News

Threat Score
70/100

Date Published: 2026-06-16

Date Updated: 2026-06-16

Author: [email protected] (The Hacker News)

...
...

Cisco disclosed CVE-2026-20262, a medium-severity vulnerability in the web UI of Catalyst SD-WAN Manager that permits an authenticated user with write access to upload crafted files (e.g., WAR) to overwrite or create files on the filesystem and potentially obtain root; Cisco reported limited active exploitation in June 2026, published IOCs (suspicious WAR uploads in vmanage logs), released patches for affected releases, and CISA added the issue to its Known Exploited Vulnerabilities catalog.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.