HIGH

CVE-2026-20128

Cisco Catalyst Sd Wan Manager 2026-02-25 CVSS v3.1
CVSS
7.5
KEV

Description

A vulnerability in the Data Collection Agent (DCA) feature of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to gain DCA user privileges on an affected system.

This vulnerability is due to the presence of a credential file for the DCA user on an affected system. An attacker could exploit this vulnerability by sending a crafted HTTP request and reading the file that contains the DCA password from that affected system. A successful exploit could allow the attacker to access another affected system and gain DCA user privileges.
Note: Cisco Catalyst SD-WAN Manager releases 20.18 and later are not affected by this vulnerability.

Summary dbcve.org

An unauthenticated remote attacker can send a crafted HTTP request to Cisco Catalyst SD-WAN Manager to read a file containing the DCA (Data Collection Agent) user password. This credential exposure allows the attacker to gain DCA user privileges on the affected system.

Mitigation

Upgrade to Cisco Catalyst SD-WAN Manager release 20.18 or later, or implement network segmentation and access controls to limit exposure to the vulnerable HTTP endpoint until patching is possible.

Weakness (CWE)

CWE-257

EPSS Score

6.94%
Probability of exploitation in next 30 days
93.8th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE