Skip to main content

Vendor/product archive

cisco / catalyst_sd-wan_manager CVEs

Beta · best-effort

91 CVEs tagged to cisco / catalyst_sd-wan_manager12 Critical, 34 High, 45 Medium, 0 Low, 0 Unrated.

CVE-2026-20262

Published Jun 15, 2026

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker to create a file or overwrite any file on th…

CVSS 6.5 · Medium
evidence mentions
10
Buzz score
69.0
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2026-20224

Published May 14, 2026

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, remote attacker to read arbitrary files that are stored in…

CVSS 8.6 · High
evidence mentions
4
Buzz score
31.1
Vendor/product tagsBeta · best-effort

CVE-2026-20210

Published May 14, 2026

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker with read-only permissions to modify configu…

CVSS 5.4 · Medium
evidence mentions
4
Buzz score
31.1
Vendor/product tagsBeta · best-effort

CVE-2026-20209

Published May 14, 2026

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker with read-only permissions to elevate their…

CVSS 5.4 · Medium
evidence mentions
4
Buzz score
31.1
Vendor/product tagsBeta · best-effort

CVE-2026-20108

Published Mar 25, 2026

A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-20133

Published Feb 25, 2026

A vulnerability in Cisco Catalyst SD-WAN Software could allow an unauthenticated, remote attacker to view sensitive information on an affected system. This vulnerability is due…

CVSS 6.5 · Medium
evidence mentions
13
Buzz score
71.4
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2026-20129

Published Feb 25, 2026

A vulnerability in the API user authentication of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to gain access to an affected system as a user who…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2026-20128

Published Feb 25, 2026

A vulnerability in the Data Collection Agent (DCA) feature of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to gain DCA user privileges on an affec…

CVSS 7.5 · High
evidence mentions
18
Buzz score
74.4
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2026-20126

Published Feb 25, 2026

A vulnerability in Cisco Catalyst SD-WAN Manager could allow an authenticated, local attacker with low privileges to gain root privileges on the underlying operating system. Th…

CVSS 8.8 · High
evidence mentions
3
Buzz score
28.9
Vendor/product tagsBeta · best-effort

CVE-2026-20122

Published Feb 25, 2026

A vulnerability in the API of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to overwrite arbitrary files on the local file system. To exploit this vu…

CVSS 5.4 · Medium
evidence mentions
18
Buzz score
74.4
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2025-20216

Published May 7, 2025

A vulnerability in the web interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an unauthenticated, remote attacker to inject HTML into the brows…

CVSS 4.7 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-20213

Published May 7, 2025

A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, local attacker to overwrite arbitrary files on the local…

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-20187

Published May 7, 2025

A vulnerability in the application data endpoints of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, remote attacker to write arbitrary…

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-20157

Published May 7, 2025

A vulnerability in certificate validation processing of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an unauthenticated, remote attacker to gain acces…

CVSS 5.9 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-20147

Published May 7, 2025

A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, remote attacker to conduct a s…

CVSS 5.4 · Medium
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2025-20122

Published May 7, 2025

A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, local attacker to gain privileges of the root user on the…

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2020-26066

Published Nov 18, 2024

A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain read and write access to information that is stored on an…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-1465

Published Nov 18, 2024

A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct a directory traversal attack and ob…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-1462

Published Nov 18, 2024

A vulnerability in the CLI of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to elevate privileges on an affected system. To exploit this vulnerab…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-1234

Published Nov 18, 2024

A vulnerability in the cluster management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to view sensitive information on an affec…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-1232

Published Nov 18, 2024

A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to read arbitrary files on the underlying…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-26074

Published Nov 18, 2024

A vulnerability in system file transfer functions of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to gain escalated privileges on the underlying…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 91 CVEsPage 1 of 4