CVE-2026-20129
Cisco Catayst SD-WAN Authentication Bypass Vulnerability
Description
A vulnerability in the API user authentication of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to gain access to an affected system as a user who has the netadmin role. The vulnerability is due to improper authentication for requests that are sent to the API. An attacker could exploit this vulnerability by sending a crafted request to the API of an affected system. A successful exploit could allow the attacker to execute commands with the privileges of the netadmin role. Note: Cisco Catalyst SD-WAN Manager releases 20.18 and later are not affected by this vulnerability.
Weakness: CWE-287
Affected products
| Vendor | Product | Category | Matched by |
|---|---|---|---|
| Cisco | Cisco Catalyst SD-WAN Manager | Network & Security Management | cna-assigner |
Vendor-reported products (1)
- Cisco · Cisco Catalyst SD-WAN Manager
Vendor advisory
cisco-sa-sdwan-authbp-qwCX8D4v
Cisco Catalyst SD-WAN Vulnerabilities
Cisco’s rating: Critical (advisory CVSS 9.8) · Published Feb 25, 2026 · updated Apr 22, 2026 (revision 1.3)
Bug IDs: CSCws33583 , CSCws33584 , CSCws33585 , CSCws33586 , CSCws33587 , CSCws93470
The vendor’s rating applies to the whole advisory and can differ from this CVE’s own CVSS severity. Where this comes from