CVE-2026-20210: Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker with read-only permissions to modify configurations and perform unauthorized actions on an affected system. This vulnerability exists because of a failure to redact sensitive information within device configurations and templates. An attacker could exploit this vulnerability by elevating their read-only permissions to those of a high-privileged user. A successful exploit could allow the attacker to access or modify configuration settings within Cisco Catalyst SD-WAN Manager as a high-privileged user.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-20210?
CVE-2026-20210 is classified as a high severity vulnerability due to its potential for privilege escalation in Cisco Catalyst SD-WAN Manager.
How does CVE-2026-20210 affect Cisco Catalyst SD-WAN Manager?
CVE-2026-20210 allows an authenticated remote attacker with read-only permissions to modify configurations and perform unauthorized actions.
What versions of Cisco Catalyst SD-WAN Manager are affected by CVE-2026-20210?
All versions of Cisco Catalyst SD-WAN Manager that have not been patched are potentially vulnerable to CVE-2026-20210.
How can I fix CVE-2026-20210?
To fix CVE-2026-20210, update your Cisco Catalyst SD-WAN Manager to the latest version that addresses this vulnerability.
What are the potential consequences of exploiting CVE-2026-20210?
Exploiting CVE-2026-20210 can lead to unauthorized modifications of configurations and compromise the integrity of the network managed by Cisco Catalyst SD-WAN Manager.