CISA has warned U.S. government agencies about an actively exploited vulnerability in Cisco Catalyst SD-WAN Manager. Tracked as CVE-2026-20262, successful exploitation of this vulnerability could allow an authenticated, remote attacker to create or overwrite any file on the affected system’s filesystem. CISA has urged users to patch the vulnerability before June 29, 2026.
Tag: Cisco Catalyst SD-WAN Manager
Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability Exploited in Attack (CVE-2026-20245)
Cisco warned of active exploitation of a vulnerability in Catalyst SD-WAN Manager. Tracked as CVE-2026-20245, the vulnerability could allow an authenticated, local attacker to execute arbitrary commands as root by supplying a crafted file to the affected system. CISA acknowledged the active exploitation of the vulnerability by adding it to its Known Exploited Vulnerabilities Catalog. CISA urges users to patch the vulnerability … Continue reading “Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability Exploited in Attack (CVE-2026-20245)”