CVE-2025-20339
- EPSS 0.03%
- Published 24.09.2025 17:15:40
- Last modified 24.09.2025 18:11:24
A vulnerability in the access control list (ACL) processing of IPv4 packets of Cisco SD-WAN vEdge Software could allow an unauthenticated, remote attacker to bypass a configured ACL. This vulnerability is due to the improper enforcement of the imp...
CVE-2021-1461
- EPSS 0.06%
- Published 18.11.2024 16:15:10
- Last modified 21.11.2024 05:44:24
A vulnerability in the Image Signature Verification feature of Cisco SD-WAN Software could allow an authenticated, remote attacker with Administrator-level credentials to install a malicious software patch on an affected device. The vulnerabili...
CVE-2020-26071
- EPSS 0.04%
- Published 18.11.2024 16:15:05
- Last modified 04.08.2025 14:42:24
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to create or overwrite arbitrary files on an affected device, which could result in a denial of service (DoS) condition. The vulnerability is due t...
CVE-2022-20655
- EPSS 0.54%
- Published 15.11.2024 16:15:20
- Last modified 18.11.2024 17:11:56
A vulnerability in the implementation of the CLI on a device that is running ConfD could allow an authenticated, local attacker to perform a command injection attack. The vulnerability is due to insufficient validation of a process argument on an a...
CVE-2024-20496
- EPSS 0.05%
- Published 25.09.2024 17:15:18
- Last modified 26.09.2024 13:32:02
A vulnerability in the UDP packet validation code of Cisco SD-WAN vEdge Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected system. This vulnerability is due to incorrect handling ...
CVE-2022-20716
- EPSS 0.13%
- Published 15.04.2022 15:15:13
- Last modified 21.11.2024 06:43:23
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain escalated privileges. This vulnerability is due to improper access control on files within the affected system. A local attacker could exploit th...
CVE-2022-20717
- EPSS 0.06%
- Published 15.04.2022 15:15:13
- Last modified 21.11.2024 06:43:24
A vulnerability in the NETCONF process of Cisco SD-WAN vEdge Routers could allow an authenticated, local attacker to cause an affected device to run out of memory, resulting in a denial of service (DoS) condition. This vulnerability is due to insuffi...