Cisco SD-WAN Zero-Day Vulnerability Actively Exploited

AI-generated NewsSnap summary based on source reporting.
Published: 2026-06-26
Category: technology
Source: CybelAngel
Original source

A critical command injection vulnerability in Cisco Catalyst SD-WAN Manager, identified as CVE-2026-20245, has been actively exploited for at least two months prior to its public disclosure. Attackers used this zero-day flaw to gain root access, create hidden accounts, and exfiltrate network configurations from a communications service provider. CISA has added this vulnerability to its list of known exploited flaws, urging immediate attention.

Want more?

Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.

Open NewsSnap.ai