Act now! Cisco patches ‘perfect 10’ Cisco Catalyst SD-WAN Controller vulnerability
Researchers at Rapid7 find new authentication bypass vulnerability that could lead to an attacker gaining admin privileges on affected systems; exploitation already underway. Network hardware giant Cisco has released a patch for a Critical Severity vulnerability in its Cisco Catalyst SD-WAN Controller devices.
Act now! Cisco patches ‘perfect 10’ Cisco Catalyst SD-WAN Controller vulnerability. Researchers at Rapid7 find new authentication bypass vulnerability that could lead to an attacker gaining admin privileges on affected systems; exploitation already underway. Network hardware giant Cisco has released a patch for a Critical Severity vulnerability in its Cisco Catalyst SD-WAN Controller devices. CVE-2026-20182 – first spotted by Rapid7 researchers in March and addressed by Cisco on May 14 – is a vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller that could allow a remote attacker to bypass authentication and gain administrative privileges. “This vulnerability exists because the peering authentication mechanism in an affected system is not working properly. An attacker could exploit this vulnerability by sending c...