CVE-2025-20147
- EPSS 0.03%
- Published 07.05.2025 17:19:01
- Last modified 31.07.2025 18:14:54
A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, remote attacker to conduct a stored cross-site scripting attack (XSS) on an affected system. ...
CVE-2025-20216
- EPSS 0.03%
- Published 07.05.2025 17:18:52
- Last modified 29.07.2025 13:47:28
A vulnerability in the web interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an unauthenticated, remote attacker to inject HTML into the browser of an authenticated user. This vulnerability is due to improper s...
CVE-2025-20187
- EPSS 0.3%
- Published 07.05.2025 17:18:31
- Last modified 04.08.2025 14:29:09
A vulnerability in the application data endpoints of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, remote attacker to write arbitrary files to an affected system. This vulnerability is due to improper ...
CVE-2025-20122
- EPSS 0.01%
- Published 07.05.2025 17:18:27
- Last modified 31.07.2025 18:14:15
A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, local attacker to gain privileges of the root user on the underlying operating system. This vulnerability is due to insuffici...
CVE-2025-20213
- EPSS 0.02%
- Published 07.05.2025 17:18:23
- Last modified 04.08.2025 14:27:43
A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, local attacker to overwrite arbitrary files on the local file system of an affected device. To exploit this vulnerability, the a...
CVE-2025-20157
- EPSS 0.02%
- Published 07.05.2025 17:17:01
- Last modified 04.08.2025 14:46:12
A vulnerability in certificate validation processing of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an unauthenticated, remote attacker to gain access to sensitive information. This vulnerability is due to improper va...
CVE-2020-26066
- EPSS 0.05%
- Published 18.11.2024 17:15:09
- Last modified 04.08.2025 14:14:53
A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain read and write access to information that is stored on an affected system. The vulnerability is due to improper handling of XML...
CVE-2021-1462
- EPSS 0.02%
- Published 18.11.2024 16:15:11
- Last modified 04.08.2025 14:32:07
A vulnerability in the CLI of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to elevate privileges on an affected system. To exploit this vulnerability, an attacker would need to have a valid Administrator account on ...
CVE-2021-1465
- EPSS 0.05%
- Published 18.11.2024 16:15:11
- Last modified 04.08.2025 14:33:15
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct a directory traversal attack and obtain read access to sensitive files on an affected system. The vulner...
CVE-2021-1461
- EPSS 0.06%
- Published 18.11.2024 16:15:10
- Last modified 21.11.2024 05:44:24
A vulnerability in the Image Signature Verification feature of Cisco SD-WAN Software could allow an authenticated, remote attacker with Administrator-level credentials to install a malicious software patch on an affected device. The vulnerabili...