BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

Cisco SD-WAN Exploited Auth Bypass Patched

Cisco patches critical exploited SD-WAN flaw allowing full admin control.

  • Cisco patched a critical vulnerability (CVE-2026-20182) in its Catalyst SD-WAN software that has been exploited in limited attacks.
  • The flaw, with a maximum CVSS score of 10.0, allows unauthenticated remote attackers to bypass authentication and gain administrative privileges.
  • The vulnerability is similar to, but distinct from, a previously exploited issue (CVE-2026-20127) in the same ‘vdaemon’ service.
  • Systems exposed to the internet are at increased risk, and Cisco advises immediate patching and log review.

In May 2026, Cisco urgently addressed a critical security flaw in its widely used networking software after discovering it was already being exploited by attackers. The vulnerability, present in Cisco Catalyst SD-WAN Controller and Cisco Catalyst SD-WAN Manager, poses a severe threat to network integrity worldwide.

- Advertisement -

An attacker could exploit the malfunctioning peering authentication mechanism by sending crafted requests to a target system. Consequently, they could bypass all authentication and obtain full administrative control.

The issue was discovered by researchers at Rapid7, who detailed their findings in a public blog post. They noted the flaw’s technical echoes in a separate, previously exploited vulnerability tracked as CVE-2026-20127.

“This new authentication bypass vulnerability affects the ‘vdaemon’ service over DTLS (UDP port 12346), which is the same service that was vulnerable to CVE-2026-20127,” the researchers stated. However, they clarified that this is a different issue located in a similar part of the networking stack.

Successful exploitation grants attackers the ability to log in as a high-privileged user. They can then access sensitive interfaces to manipulate the configuration of the entire SD-WAN fabric.

- Advertisement -

The company’s official security advisory warned that internet-exposed systems are at the greatest risk. Consequently, Cisco is urging all impacted customers to apply updates immediately.

Organizations should audit their “/var/log/auth.log” file for unauthorized login attempts. Additionally, they must check for suspicious peering events from unrecognized IP addresses.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

CleanSpark Raises $2.2B for AI Campus Leased to Meta

CleanSpark is raising $2.227 billion via senior secured notes due 2031 to fund construction...

Revolut hackers demand $3M in Monero after data breach

A Hacking group demanding $3 million in Monero claims responsibility for a data breach...

S&P Global to acquire blockchain security firm OpenZeppelin.

S&P Global has agreed to acquire blockchain security firm OpenZeppelin to bolster its digital...

Mincer Master

n✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant...

Celsius Estate Sues BitMEX for $490M Over 2020 Liquidations

The Celsius bankruptcy estate sued five Bitmex-linked companies, alleging fraud, market manipulation, and wrongful...

Must Read

How to Choose a Cryptocurrency Exchange: Major Risks and Expert Advice

During the bitcoin frenzy, in late 2017, Coinbase, one of the key players in the global cryptocurrency market, stopped trading operations. At a point...
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading