CVE-2020-26071: Cisco Catalyst SD-WAN Manager
High severity, CVSS 8.4. EPSS: 0.2% chance of exploitation in the next 30 days.
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to create or overwrite arbitrary files on an affected device, which could result in a denial of service (DoS) condition. The vulnerability is due to insufficient input validation for specific commands. An attacker could exploit this vulnerability by including crafted arguments to those specific commands. A successful exploit could allow the attacker to create or overwrite arbitrary files on the affected device, which could result in a DoS condition.Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
Affected products
- Cisco Catalyst SD-WAN Manager: version 17.2.4 only; version 17.2.5 only; version 17.2.6 only; version 17.2.7 only; version 17.2.8 only; version 17.2.9 only; …
Published 2024-11-18. Last modified 2026-06-17.