Cisco SD-WAN Faces Exploitation of High-Severity Zero-Day Vulnerability

A critical zero-day vulnerability in Cisco's SD-WAN management software is currently being exploited, with no patch available yet.

A critical zero-day vulnerability in Cisco's SD-WAN management software is currently being exploited, with no patch available yet.

Cisco has identified a severe authentication bypass vulnerability in its Catalyst SD-WAN Controller, which is currently being exploited in limited attacks. The flaw, tracked as CVE-2026-20182, allows unauthorized remote access to administrative privileges.

A previously unknown backdoor malware named Firestarter has been detected in a U.S. federal agency, prompting alerts across government and critical infrastructure sectors.

CISA has issued an urgent warning regarding three vulnerabilities in Cisco's Catalyst SD-WAN Manager, urging federal agencies to apply patches within four days.

Cisco has disclosed that over 230 models of its Wi-Fi access points are accumulating 5MB of undeletable data daily, hindering software updates and potentially causing operational issues.

Cisco has confirmed that two vulnerabilities in its SD-WAN management software are currently being exploited, posing risks of file overwrites and privilege escalation.

The Five Eyes intelligence alliance has issued a joint alert regarding two critical vulnerabilities in Cisco Catalyst SD-WAN devices, urging organizations to take immediate action.

Cisco has announced the rebranding of Pure Storage to Everpure, reflecting a shift in focus towards dynamic data management. Additionally, the company has introduced a redesigned Room Kit Pro G2, emphasizing aesthetics and efficiency.

Cisco has released a fix for a severe vulnerability in its AsyncOS software, which has been actively targeted by attackers for several weeks.