Cisco has identified a critical zero‑day vulnerability (CVE-2026-76504) in Cisco Catalyst SD‑WAN Manager, currently under active exploitation, which may allow an unauthenticated remote attacker to gain administrator‑level access to affected systems.
Affected Systems:
Cisco Catalyst SD-WAN Manager: all release versions earlier than 20.9.10.1, 20.12.8.2, 20.15.6.1, 20.18.4.1, 26.1.2.1, and 26.2.1.
Security Risks
Successful exploitation could allow an unauthenticated attacker to gain administrator-level access to the SD-WAN Manager, potentially allowing unauthorized changes to network configurations and other administrative actions.