VDB

GCVE-VVD-NCSC-2026-71

GCVE-VVD-NCSC-2026-71
Advisory PublishedCVSS 5.4/10
Vulnetix · Advisory published February 25, 2026
Multiple vulnerabilities in Cisco Catalyst SD-WAN Manager APIs allow authenticated users with read-only credentials to overwrite arbitrary files and escalate privileges to root, compromising system integrity and sensitive information.

Weaknesses (CWE)

CWE-200Exposure of Sensitive Information to an Unauthorized ActorCWE-287Improper Authentication

Risk Scores

CVSS 3.1
5.4/10
Medium · CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

Affected Products

VendorProductVersionsPlatforms
Ciscovers:unknown/*

Aliases

Transitive aliases

CVE-2022-20847VVD-CESS-2026-20133CVE-2022-20915cisco-sa-alg-dos-KU9Z8kFXGHSA-xx9r-h2q8-q5m3BDU:2023-00304GHSA-prm7-p5hm-qq42cisco-sa-ssh-excpt-dos-FzOBQTnkVVD-CESS-2026-20129GHSA-x65r-rvgh-v43vcisco-sa-ewc-priv-esc-nderYLtKGHSA-q52w-4rvg-f65rBDU:2023-00024GHSA-p4cq-46q3-jr7wVVD-CESS-2026-20128BDU:2023-00797GHSA-854x-2jm6-mvwpBDU:2023-01145VVD-CISA-2026-20126GHSA-mjw4-rp5q-2h7wCISCO-SA-SD-WAN-PRIV-E6E8TEDFCVE-2022-20944VAR-202209-1914GHSA-3phq-3jhx-rrhwBDU:2023-00032GHSA-9qpv-49q8-9chxCVE-2022-20837cisco-sa-wlc-dos-mKGRrsCBGSD-2022-20769cisco-sa-iosxe-6vpe-dos-tJBtf5ZvBDU:2023-00303cisco-sa-c9800-mob-dos-342YAc6JEUVD-2026-8677VVD-ACSC-2026-0001VVD-CISA-2026-20128GHSA-cf88-f64q-c626CVE-2022-20920GHSA-c26m-p2mq-4vrwBDU:2022-07469CVE-2022-20775EUVD-2026-8678VVD-CISA-2026-20133EUVD-2022-26025CVE-2022-20856GHSA-7cwr-j6cv-fjjpGHSA-w565-xpj5-g5rxCVE-2022-20919VVD-CESS-2026-20127VVD-CESS-2026-20122CERTFR-2026-ALE-002cisco-sa-wlc-dhcp-dos-76pCjPxKBDU:2023-00028cisco-sa-sdwan-rpa-EHchtZkGSD-2022-20775CISCO-SA-WLC-DOS-MKGRRSCBBDU:2022-07466CVE-2022-20848cisco-sa-wlc-udp-dos-XDyEwhNzBDU:2023-01146cisco-sa-ap-assoc-dos-EgVqtON8EUVD-2026-8673EUVD-2026-8674CVE-2022-20769CVE-2022-20945GHSA-mxx7-xwrv-x9hrEUVD-2026-8675VVD-CISA-2026-20122VVD-CISA-2026-20129GHSA-8p52-5f85-cwpccisco-sa-iosxe-cip-dos-9rTbKLt9BDU:2023-00900cisco-sa-ios-xe-cat-verify-D4NEQA6qVVD-CESS-2026-20126GHSA-mp6j-7g85-8pg2GHSA-5h54-2f2f-5x5cBDU:2023-00993cisco-sa-iosxe-mpls-dos-Ab4OUL3GHSA-x4hg-95c5-c2vpGHSA-8whp-gj34-8pwrBDU:2023-00026BDU:2022-07467CVE-2022-20855CVE-2022-20818GHSA-3mfm-pfv2-vmrpCVE-2022-20870cisco-sa-sdwan-authbp-qwCX8D4vEUVD-2026-8676cisco-sa-sd-wan-priv-E6e8tEdF

References

advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›