CVE-2026-20262
Cisco Cisco Catalyst SD-WAN Manager, catalyst sd-wan manager
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker to create a file or overwrite any file on the filesystem of an affected system. This vulnerability exists because the affected software does not properly validate user-supplied input during a file upload process. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected API endpoint of the affected system. A successful exploit could allow the attacker to create or overwrite any file on the underlying operating system. This...
- CVSS
- 6.5
- EPSS
- 28.2% 97.9% percentile
- CISA KEV
- Listed
- Published
- 2026.06.16