Cisco Catalyst Sd-Wan Manager vulnerabilities
74 known vulnerabilities affecting cisco/catalyst_sd-wan_manager.
Total CVEs
74
CISA KEV
8
actively exploited
Public exploits
5
Exploited in wild
9
Severity breakdown
CRITICAL7HIGH24MEDIUM43
Vulnerabilities
Page 3 of 4
CVE-2021-1528P3HIGHCVSS 7.8≥ 20.4, < 20.4.2≥ 20.5, < 20.5.12021-06-04
CVE-2021-1528 [HIGH] CWE-250 CVE-2021-1528: A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated privileges on an affected system. This vulnerability exists because the affected software does not properly restrict access to privileged processes. An attacker could exploit this vulnerability by invoking a privileged process in the affected
nvd
CVE-2021-1482P3MEDIUMCVSS 6.4v17.2.4v17.2.5+62 more2024-11-15
CVE-2021-1482 [MEDIUM] CWE-20 CVE-2021-1482: A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could al
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to bypass authorization checking and gain access to sensitive information on an affected system.
This vulnerability is due to insufficient authorization checks. An attacker could exploit this vulnerability by sending craf
nvd
CVE-2022-20747P3MEDIUMCVSS 6.5v20.72022-04-15
CVE-2022-20747 [MEDIUM] CWE-202 CVE-2022-20747: A vulnerability in the History API of Cisco SD-WAN vManage Software could allow an authenticated, re
A vulnerability in the History API of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain access to sensitive information on an affected system. This vulnerability is due to insufficient API authorization checking on the underlying operating system. An attacker could exploit this vulnerability by sending a crafted API
nvd
CVE-2021-1484P3MEDIUMCVSS 6.5v17.2.4v17.2.5+56 more2024-11-15
CVE-2021-1484 [MEDIUM] CWE-88 CVE-2021-1484: A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, re
A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to inject arbitrary commands on an affected system and cause a denial of service (DoS) condition.
This vulnerability is due to improper input validation of user-supplied input to the device template configuration. An attacker could exploit this
nvd
CVE-2021-34712P3MEDIUMCVSS 6.5≥ 20.4, ≤ 20.4.2v20.5+1 more2021-09-23
CVE-2021-34712 [MEDIUM] CWE-943 CVE-2021-34712: A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow a
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct cypher query language injection attacks on an affected system. This vulnerability is due to insufficient input validation by the web-based management interface. An attacker could exploit this vulnerability b
nvd
CVE-2022-20735P3MEDIUMCVSS 6.5v20.72022-04-15
CVE-2022-20735 [MEDIUM] CWE-352 CVE-2022-20735: A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow a
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. This vulnerability is due to insufficient CSRF protections for the web-based management interface on an affected system. An attacker could
nvd
CVE-2025-20157P3MEDIUMCVSS 5.9v17.2.4v17.2.5+279 more2025-05-07
CVE-2025-20157 [MEDIUM] CWE-295 CVE-2025-20157: A vulnerability in certificate validation processing of Cisco Catalyst SD-WAN Manager, formerly Cisc
A vulnerability in certificate validation processing of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an unauthenticated, remote attacker to gain access to sensitive information.
This vulnerability is due to improper validation of certificates that are used by the Smart Licensing feature. An attacker with a privileged ne
nvd
CVE-2021-1462P4MEDIUMCVSS 6.7v17.2.4v17.2.5+37 more2024-11-18
CVE-2021-1462 [MEDIUM] CWE-20 CVE-2021-1462: A vulnerability in the CLI of Cisco SD-WAN vManage Software could allow an authenticated, local
A vulnerability in the CLI of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to elevate privileges on an affected system. To exploit this vulnerability, an attacker would need to have a valid Administrator account on an affected system.
The vulnerability is due to incorrect privilege assignment. An attacker could exploit thi
nvd
CVE-2021-1464P4MEDIUMCVSS 5.0v17.2.4v17.2.5+40 more2024-11-15
CVE-2021-1464 [MEDIUM] CWE-20 CVE-2021-1464: A vulnerability in Cisco SD-WAN vManage Software could allow an authenticated, remote attacker
A vulnerability in Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to bypass authorization checking and gain restricted access to the configuration information of an affected system.
This vulnerability exists because the affected software has insufficient input validation for certain commands. An attacker could exploit this v
nvd
CVE-2022-20930P4MEDIUMCVSS 6.7v20.8v20.92022-09-30
CVE-2022-20930 [MEDIUM] CWE-88 CVE-2022-20930: A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to overwrite and possibly corrupt files on an affected system. This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by injecting arbitrary commands that are executed as the root user account. A successful
nvd
CVE-2020-3590P4MEDIUMCVSS 6.4v20.3.12020-11-06
CVE-2020-3590 [MEDIUM] CWE-79 CVE-2020-3590: A vulnerability in the web-based management interface of the Cisco SD-WAN vManage Software could all
A vulnerability in the web-based management interface of the Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user. The vulnerability exists because the web-based management interface does not properly validate user-supplied input. An attacker could exploit this vulnera
nvd
CVE-2020-3587P4MEDIUMCVSS 6.4v20.3.12020-11-06
CVE-2020-3587 [MEDIUM] CWE-79 CVE-2020-3587: A vulnerability in the web-based management interface of the Cisco SD-WAN vManage Software could all
A vulnerability in the web-based management interface of the Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user. The vulnerability exists because the web-based management interface does not properly validate user-supplied input. An attacker could exploit this vulnera
nvd
CVE-2023-20098P4MEDIUMCVSS 6.0v20.112023-05-09
CVE-2023-20098 [MEDIUM] CWE-24 CVE-2023-20098: A vulnerability in the CLI of Cisco SDWAN vManage Software could allow an authenticated, local attac
A vulnerability in the CLI of Cisco SDWAN vManage Software could allow an authenticated, local attacker to delete arbitrary files.
This vulnerability is due to improper filtering of directory traversal character sequences within system commands. An attacker with administrative privileges could exploit this vulnerability by running a system command co
nvd
CVE-2021-1486P4MEDIUMCVSS 5.3≥ 20.4, < 20.4.12021-05-06
CVE-2021-1486 [MEDIUM] CWE-203 CVE-2021-1486: A vulnerability in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to
A vulnerability in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to enumerate user accounts. This vulnerability is due to the improper handling of HTTP headers. An attacker could exploit this vulnerability by sending authenticated requests to an affected system. A successful exploit could allow the attacker to compare th
nvd
CVE-2026-20209P4MEDIUMCVSS 5.4fixed in 20.9.9.1≥ 20.10, < 20.12.5.4+6 more2026-05-14
CVE-2026-20209 [MEDIUM] CWE-779 CVE-2026-20209: A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker with read-only permissions to elevate their privileges from low to high and perform actions as a high-privileged user.
This vulnerability exists because sensitive session information is recorded in audit logs. An at
nvd
CVE-2026-20210P4MEDIUMCVSS 5.4fixed in 20.9.9.1≥ 20.10, < 20.12.5.4+6 more2026-05-14
CVE-2026-20210 [MEDIUM] CWE-779 CVE-2026-20210: A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker with read-only permissions to modify configurations and perform unauthorized actions on an affected system.
This vulnerability exists because of a failure to redact sensitive information within device configurations
nvd
CVE-2021-1512P4MEDIUMCVSS 6.0≥ 19.2, < 19.2.3≥ 20.3, < 20.3.1+2 more2021-05-06
CVE-2021-1512 [MEDIUM] CWE-552 CVE-2021-1512: A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying file system of an affected system. This vulnerability is due to insufficient validation of the user-supplied input parameters of a specific CLI command. An attacker could exploit this vulnerability by issuing t
nvd
CVE-2021-1466P4MEDIUMCVSS 5.4v17.2.4v17.2.5+36 more2024-11-15
CVE-2021-1466 [MEDIUM] CWE-20 CVE-2021-1466: A vulnerability in the vDaemon service of Cisco SD-WAN vManage Software could allow an authenti
A vulnerability in the vDaemon service of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to cause a buffer overflow on an affected system, resulting in a denial of service (DoS) condition.
The vulnerability is due to incomplete bounds checks for data that is provided to the vDaemon service of an affected system. An attacker
nvd
CVE-2021-1234P4MEDIUMCVSS 5.3v17.2.4v17.2.5+46 more2024-11-18
CVE-2021-1234 [MEDIUM] CWE-497 CVE-2021-1234: A vulnerability in the cluster management interface of Cisco SD-WAN vManage Software could allo
A vulnerability in the cluster management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to view sensitive information on an affected system. To be affected by this vulnerability, the vManage software must be in cluster mode.
This vulnerability is due to the absence of authentication for sensitive informatio
nvd
CVE-2022-20830P4MEDIUMCVSS 5.3≥ 20.4, < 20.6.1v20.72022-10-10
CVE-2022-20830 [MEDIUM] CWE-306 CVE-2022-20830: A vulnerability in authentication mechanism of Cisco Software-Defined Application Visibility and Con
A vulnerability in authentication mechanism of Cisco Software-Defined Application Visibility and Control (SD-AVC) on Cisco vManage could allow an unauthenticated, remote attacker to access the GUI of Cisco SD-AVC without authentication. This vulnerability exists because the GUI is accessible on self-managed cloud installations or local server instal
nvd