VendorsCiscocatalyst_sd-wan_manager20.3.4.2
Vulnerabilities

Cisco Catalyst SD-WAN Manager 20.3.4.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2025-20122
Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability
Published 2025-05-07 · Analyzed
7.8EPSS 0.001
CVE-2023-20261
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to retrieve arbitrary files from an affected system. This vulnerability is due to improper validation of parameters that are sent to the web UI. An attacker could exploit this vulnerability by logging in to Cisco Catalyst SD-WAN Manager and issuing crafted requests using the web UI. A successful exploit could allow the attacker to obtain arbitrary files from the underlying Linux file system of an affected system. To exploit this vulnerability, the attacker must be an authenticated user.
Published 2023-10-18 · Modified
6.5EPSS 0.005
CVE-2025-20157
Cisco Catalyst vManage Certificate Validation Vulnerability
Published 2025-05-07 · Analyzed
5.9EPSS 0.003
CVE-2025-20213
Cisco Catalyst SDWAN Manager Arbitrary File Overwrite Vulnerability
Published 2025-05-07 · Analyzed
5.5EPSS 0.002
CVE-2025-20147
Cisco SD-WAN vManage Stored Cross-Site Scripting Vulnerability
Published 2025-05-07 · Analyzed
5.4EPSS 0.003
CVE-2025-20216
Cisco Catalyst SD-WAN Manager Reflected HTML Injection Vulnerability
Published 2025-05-07 · Analyzed
4.7EPSS 0.003