Cisco Catalyst Sd-Wan Manager vulnerabilities
74 known vulnerabilities affecting cisco/catalyst_sd-wan_manager.
Total CVEs
74
CISA KEV
8
actively exploited
Public exploits
5
Exploited in wild
9
Severity breakdown
CRITICAL7HIGH24MEDIUM43
Vulnerabilities
Page 2 of 4
CVE-2022-20696P3HIGHCVSS 8.8≥ 20.7, < 20.9.12022-09-08
CVE-2022-20696 [HIGH] CWE-284 CVE-2022-20696: A vulnerability in the binding configuration of Cisco SD-WAN vManage Software containers could allow
A vulnerability in the binding configuration of Cisco SD-WAN vManage Software containers could allow an unauthenticated, adjacent attacker who has access to the VPN0 logical network to also access the messaging service ports on an affected system. This vulnerability exists because the messaging server container ports on an affected system lack suffici
nvd
CVE-2026-20126P3HIGHCVSS 7.8fixed in 20.9.8.2≥ 20.11, < 20.12.5.3+3 more2026-02-25
CVE-2026-20126 [HIGH] CWE-648 CVE-2026-20126: A vulnerability in Cisco Catalyst SD-WAN Manager could allow an authenticated, local attacker with l
A vulnerability in Cisco Catalyst SD-WAN Manager could allow an authenticated, local attacker with low privileges to gain root privileges on the underlying operating system.
This vulnerability is due to an insufficient user authentication mechanism in the REST API. An attacker could exploit this vulnerability by sending a request to the REST API of t
nvd
CVE-2021-1275P3HIGHCVSS 7.5≥ 20.4, < 20.4.1≥ 20.5, < 20.5.12021-05-06
CVE-2021-1275 [HIGH] CWE-20 CVE-2021-1275: Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote att
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or gain access to sensitive information, or allow an authenticated, local attacker to gain escalated privileges or gain unauthorized access to the application. For more information about these vulnerabilities, see the Detail
nvd
CVE-2021-1506P3HIGHCVSS 7.2≥ 20.4, < 20.4.1≥ 20.5, < 20.5.12021-05-06
CVE-2021-1506 [HIGH] CWE-20 CVE-2021-1506: Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote att
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or gain access to sensitive information, or allow an authenticated, local attacker to gain escalated privileges or gain unauthorized access to the application. For more information about these vulnerabilities, see the Detail
nvd
CVE-2021-1480P3HIGHCVSS 7.8≥ 20.4, < 20.4.12021-04-08
CVE-2021-1480 [HIGH] CWE-119 CVE-2021-1480: Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote att
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or allow an authenticated, local attacker to gain escalated privileges on an affected system. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2020-26071P3HIGHCVSS 8.4v17.2.4v17.2.5+40 more2024-11-18
CVE-2020-26071 [HIGH] CWE-22 CVE-2020-26071: A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacke
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to create or overwrite arbitrary files on an affected device, which could result in a denial of service (DoS) condition.
The vulnerability is due to insufficient input validation for specific commands. An attacker could exploit this vulnerability by includi
nvd
CVE-2025-20122P3HIGHCVSS 7.8v17.2.4v17.2.5+280 more2025-05-07
CVE-2025-20122 [HIGH] CWE-300 CVE-2025-20122: A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could al
A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, local attacker to gain privileges of the root user on the underlying operating system.
This vulnerability is due to insufficient input validation. An authenticated attacker with read-only privileges on the SD-WAN Manager system co
nvd
CVE-2020-26074P3HIGHCVSS 7.8v17.2.4v17.2.5+44 more2024-11-18
CVE-2020-26074 [HIGH] CWE-250 CVE-2020-26074: A vulnerability in system file transfer functions of Cisco SD-WAN vManage Software could allow
A vulnerability in system file transfer functions of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to gain escalated privileges on the underlying operating system.
The vulnerability is due to improper validation of path input to the system file transfer functions. An attacker could exploit this vulnerability by sending requ
nvd
CVE-2025-20187P3MEDIUMCVSS 6.5v17.2.4v17.2.5+104 more2025-05-07
CVE-2025-20187 [MEDIUM] CWE-22 CVE-2025-20187: A vulnerability in the application data endpoints of Cisco Catalyst SD-WAN Manager, formerly Cisco S
A vulnerability in the application data endpoints of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, remote attacker to write arbitrary files to an affected system.
This vulnerability is due to improper validation of requests to APIs. An attacker could exploit this vulnerability by sending malicious reques
nvd
CVE-2021-1514P3HIGHCVSS 7.8≥ 20.1, < 20.1.1≥ 20.3, < 20.3.1+2 more2021-05-06
CVE-2021-1514 [HIGH] CWE-20 CVE-2021-1514: A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to inject arbitrary commands to be executed with Administrator privileges on the underlying operating system. This vulnerability is due to insufficient input validation on certain CLI commands. An attacker could exploit this vulnerability by authenticating to
nvd
CVE-2023-20262P3HIGHCVSS 7.5≥ 20.4, < 20.9.32023-09-27
CVE-2023-20262 [HIGH] CWE-399 CVE-2023-20262: A vulnerability in the SSH service of Cisco Catalyst SD-WAN Manager could allow an unauthenticated,
A vulnerability in the SSH service of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to cause a process crash, resulting in a DoS condition for SSH access only. This vulnerability does not prevent the system from continuing to function, and web UI access is not affected.
This vulnerability is due to insufficient resource
nvd
CVE-2020-26065P3MEDIUMCVSS 6.5v17.2.4v17.2.5+38 more2023-08-04
CVE-2020-26065 [MEDIUM] CWE-22 CVE-2020-26065: A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow a
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct path traversal attacks and obtain read access to sensitive files on an affected system.
The vulnerability is due to insufficient validation of HTTP requests. An attacker could exploit this vulnerability by se
nvd
CVE-2021-1491P3MEDIUMCVSS 6.5v17.2.4v17.2.5+61 more2024-11-15
CVE-2021-1491 [MEDIUM] CWE-59 CVE-2021-1491: A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could al
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to read arbitrary files on the underlying file system of the device.
This vulnerability is due to insufficient file scope limiting. An attacker could exploit this vulnerability by creating a specific file reference on the
nvd
CVE-2020-26066P3MEDIUMCVSS 6.5v17.2.4v17.2.5+43 more2024-11-18
CVE-2020-26066 [MEDIUM] CWE-611 CVE-2020-26066: A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, re
A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain read and write access to information that is stored on an affected system.
The vulnerability is due to improper handling of XML External Entity (XXE) entries when parsing certain XML files. An attacker could exploit this vulnerability
nvd
CVE-2021-1513P3HIGHCVSS 7.5fixed in 20.3.1≥ 20.4, < 20.4.1+1 more2021-05-06
CVE-2021-1513 [HIGH] CWE-20 CVE-2021-1513: A vulnerability in the vDaemon process of Cisco SD-WAN Software could allow an unauthenticated, remo
A vulnerability in the vDaemon process of Cisco SD-WAN Software could allow an unauthenticated, remote attacker to cause a device to reload, resulting in a denial of service (DoS) condition. This vulnerability is due to insufficient handling of malformed packets. An attacker could exploit this vulnerability by sending crafted traffic to an affected devic
nvd
CVE-2021-1137P3HIGHCVSS 7.8≥ 20.4, < 20.4.12021-04-08
CVE-2021-1137 [HIGH] CWE-119 CVE-2021-1137: Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote att
Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or allow an authenticated, local attacker to gain escalated privileges on an affected system. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2021-1232P3MEDIUMCVSS 6.5v17.2.4v17.2.5+44 more2024-11-18
CVE-2021-1232 [MEDIUM] CWE-522 CVE-2021-1232: A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could al
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to read arbitrary files on the underlying filesystem of an affected system.
This vulnerability is due to insufficient access control for sensitive information that is written to an affected system. An attacker could expl
nvd
CVE-2021-1483P3MEDIUMCVSS 6.4v17.2.4v17.2.5+60 more2024-11-15
CVE-2021-1483 [MEDIUM] CWE-611 CVE-2021-1483: A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, re
A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain read and write access to information that is stored on an affected system.
This vulnerability is due to improper handling of XML External Entity (XXE) entries when the affected software parses certain XML files. An attacker could exploi
nvd
CVE-2023-20261P3MEDIUMCVSS 6.5v17.2.4v17.2.5+97 more2023-10-18
CVE-2023-20261 [MEDIUM] CWE-284 CVE-2023-20261: A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to retrieve arbitrary files from an affected system.
This vulnerability is due to improper validation of parameters that are sent to the web UI. An attacker could exploit this vulnerability by logging in to Cisco Catalyst SD-WAN Manager and is
nvd
CVE-2022-20739P3HIGHCVSS 7.3v20.72022-04-15
CVE-2022-20739 [HIGH] CWE-269 CVE-2022-20739: A vulnerability in the CLI of Cisco SD-WAN vManage Software could allow an authenticated, local atta
A vulnerability in the CLI of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system as the root user. The attacker must be authenticated on the affected system as a low-privileged user to exploit this vulnerability. This vulnerability exists because a file leveraged
nvd