vulnerability
Cisco fixes SD-WAN vManage flaw exploited in zero-day attacks
Critical
Summary
Cisco has released a security update to address a critical zero-day vulnerability (CVE-2026-20262) in its SD-WAN vManage software, allowing attackers to gain root privileges. The flaw stems from improper input validation during file uploads, and has been actively exploited in multiple attacks targeting Cisco’s SD-WAN infrastructure. Cisco is urging customers to promptly patch their systems following the discovery of this vulnerability and related zero-days.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data