← Back to CVE List
CVE-2026-20209NVD
Vulnerability Summary
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker with read-only permissions to elevate their privileges from low to high and perform actions as a high-privileged user.
This vulnerability exists because sensitive session information is recorded in audit logs. An attacker could exploit this vulnerability by elevating their read-only permissions in Cisco Catalyst SD-WAN Manager to those of a high-privileged user. A successful exploit could allow the attacker to perform actions as a high-privileged user.
This vulnerability exists because sensitive session information is recorded in audit logs. An attacker could exploit this vulnerability by elevating their read-only permissions in Cisco Catalyst SD-WAN Manager to those of a high-privileged user. A successful exploit could allow the attacker to perform actions as a high-privileged user.
CVSS v3.1 Base Metrics — Score 5.4 (MEDIUM)
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredLow
User InteractionNone
ScopeUnchanged
ConfidentialityLow
IntegrityLow
AvailabilityNone
Affected & Patched Versions
- Cisco Catalyst Sd-wan Manager < 20.9.9.1
- Cisco Catalyst Sd-wan Manager >= 20.10 and < 20.12.5.4
- Cisco Catalyst Sd-wan Manager >= 20.12.6 and < 20.12.6.2
- Cisco Catalyst Sd-wan Manager >= 20.13 and < 20.15.4.4
- Cisco Catalyst Sd-wan Manager >= 20.15.5 and < 20.15.5.2
- Cisco Catalyst Sd-wan Manager >= 20.16 and < 20.18.2.2
- Cisco Catalyst Sd-wan Manager >= 26.1 and < 26.1.1.1
- Cisco Catalyst Sd-wan Manager
- Cisco Catalyst Sd-wan Manager 20.9.9.1
- Cisco Catalyst Sd-wan Manager 20.12.5.4
- Cisco Catalyst Sd-wan Manager 20.12.6.2
- Cisco Catalyst Sd-wan Manager 20.15.4.4
- Cisco Catalyst Sd-wan Manager 20.15.5.2
- Cisco Catalyst Sd-wan Manager 20.18.2.2
- Cisco Catalyst Sd-wan Manager 26.1.1.1