cisco-sa-vmanxml-Aj4GFEKd: Cisco SD-WAN vManage Software XML External Entity Vulnerability

Published Jul 15, 2020
·
Updated

A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain read and write access to information that is stored on an affected system. The vulnerability is due to improper handling of XML External Entity (XXE) entries when parsing certain XML files. An attacker could exploit this vulnerability by persuading a user to import a crafted XML file with malicious entries. A successful exploit could allow the attacker to read and write files within the affected application. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-vmanxml-Aj4GFEKd

Credit

Johnny Yu(Walmart Security)

Affected Software

1 affected component
cisco SD-WAN vManage Software

Event History

Jul 15, 2020
Advisory Published
04:00 PM
Data Sourced
04:00 PM
DescriptionSeverityWeaknessAffected Software

Child vulnerabilities

Contains the following vulnerabilities.

Frequently Asked Questions

1

What is the severity of cisco-sa-vmanxml-Aj4GFEKd?

The severity of cisco-sa-vmanxml-Aj4GFEKd is classified as critical due to the potential for unauthorized access to sensitive information.

2

How do I fix cisco-sa-vmanxml-Aj4GFEKd?

To fix cisco-sa-vmanxml-Aj4GFEKd, it is recommended to update Cisco SD-WAN vManage Software to the latest version provided by Cisco.

3

What kind of access can an attacker gain through cisco-sa-vmanxml-Aj4GFEKd?

An attacker exploiting cisco-sa-vmanxml-Aj4GFEKd can gain read and write access to the information stored on the affected system.

4

Who is affected by cisco-sa-vmanxml-Aj4GFEKd?

Users of Cisco SD-WAN vManage Software are affected by cisco-sa-vmanxml-Aj4GFEKd.

5

Is authentication required to exploit cisco-sa-vmanxml-Aj4GFEKd?

Yes, the vulnerability cisco-sa-vmanxml-Aj4GFEKd requires the attacker to be authenticated to exploit the system.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203