Cisco Catalyst SD-WAN Manager(Cisco SD-WAN vManage)是美国思科(Cisco)公司的一个高度可定制的仪表板。可简化和自动化 Cisco SD-WAN 的部署、配置、管理和操作。 Cisco Catalyst SD-WAN Manager存在安全漏洞,该漏洞源于未能对设备配置和模板中的敏感信息进行编辑,可能导致具有只读权限的经过身份验证的远程攻击者将权限提升到高权限用户,从而访问或修改配置设置。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Cisco | Cisco Catalyst SD-WAN Manager | 20.1.12 |
affected |
19.2.1 |
affected | ||
18.4.4 |
affected | ||
18.4.5 |
affected | ||
20.1.1.1 |
affected | ||
20.1.1 |
affected | ||
19.3.0 |
affected | ||
19.2.2 |
affected | ||
| … +348 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Catalyst SD-WAN Manager | 20.1.12 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-20182 | 10.0 CRITICAL | Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability |
| CVE-2026-20224 | 8.6 HIGH | Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability |
| CVE-2026-20209 | 5.4 MEDIUM | Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability |
No comments yet