Cisco SD-WAN Controller and Manager Authentication Bypass Vulnerability (CVE-2026-20127)

Cisco released a security update to address an actively exploited vulnerability impacting Cisco Catalyst SD-WAN Controller and SD-WAN Manager. Tracked as CVE-2026-20127, successful exploitation of the vulnerability may allow an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges on an affected system. CISA also acknowledged the active exploitation of the vulnerability and added it to its Known Exploited Vulnerabilities Catalog. CISA … Continue reading “Cisco SD-WAN Controller and Manager Authentication Bypass Vulnerability (CVE-2026-20127)”