CVE-2025-20147: Cisco Catalyst SD-WAN Manager

Medium severity, CVSS 5.4. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, remote attacker to conduct a stored cross-site scripting attack (XSS) on an affected system.  This vulnerability is due to improper sanitization of user input to the web-based management interface. An attacker could exploit this vulnerability by submitting a malicious script through the interface. A successful exploit could allow the attacker to conduct a stored XSS attack on the affected system.

Affected products

  • Cisco Catalyst SD-WAN Manager: version 17.2.4 only; version 17.2.5 only; version 17.2.6 only; version 17.2.7 only; version 17.2.8 only; version 17.2.9 only; …

Published 2025-05-07. Last modified 2026-06-17.