nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2026-20126 CVE-2026-20126
HIGH
Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability
Record summary
CVE-2026-20126 has a selected CVSS score of 8.8 (high).
Description
A vulnerability in Cisco Catalyst SD-WAN Manager could allow an authenticated, local attacker with low privileges to gain root privileges on the underlying operating system. This vulnerability is due to an insufficient user authentication mechanism in the REST API. An attacker could exploit this vulnerability by sending a request to the REST API of the affected system. A successful exploit could allow the attacker to gain root privileges on the underlying operating system.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 26, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Cisco Catalyst SD-WAN ManagerBrowse Cisco / Cisco Catalyst SD-WAN ManagerDefault status: unknown | CVE List | 20.1.12 | affected |
| 19.2.1 | affected | ||
| 18.4.4 | affected | ||
| 18.4.5 | affected | ||
| 20.1.1.1 | affected | ||
| 20.1.1 | affected | ||
| 19.3.0 | affected | ||
| 19.2.2 | affected | ||
| 19.2.099 | affected | ||
| 18.3.6 | affected | ||
| 18.3.7 | affected | ||
| 19.2.0 | affected | ||
| Showing 12 of 335 version ranges | |||
References
2cisco-sa-sdwan-authbp-qwCX8D4v
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v