Cisco Security Update – 07 June 2026

Cisco has released a security update to address one vulnerability affecting Cisco Catalyst SD-WAN Manager.

The addressed vulnerability could allow the local attacker to escalate privileges to root by uploading a crafted file that exploits insufficient validation of user‑supplied input, enabling arbitrary command execution on the affected systems.

The addressed vulnerability:

Cisco Catalyst SD-WAN Manager Authenticated Privilege Escalation Vulnerability (CVE-2026-20245):

  • CVSS: 7.8
  • Attack Vector: Local
  • Attack Complexity: Low
  • Privileges Required: Low
  • User Interaction: None
  • Consequences: Gain Privileges
Vulnerabilities

CVE-2026-20245

Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Cisco Security Update

References