CISCO Security Advisory

Published Date: Not specified

CVE: CVE-2026-20294

Advisory Summary

πŸ—“οΈ August 5, 2026

πŸ”βœ¨ Cisco Catalyst SD-WAN Manager β€” Information Disclosure (CVE-2026-20294)

⬆️ What happened
A vulnerability exists in the web-based management interface of Cisco Catalyst SD-WAN Manager. An authenticated remote attacker could access sensitive information displayed in clear text.

🧩 Root cause
Insufficient access control enforcement for certain template types that are missing from the encryption allowlist.

⚠️ Why it matters (security impact)
This is rated Medium, but the consequence can be high in practice: exposed authentication credentials may enable escalation and compromise of network infrastructure and connected services.

🧰 Patches / mitigations
βœ… Cisco has released software updates that address the vulnerability.
🚫 No workarounds are available.

-WAN -2026-20294

Reference: Vendor Advisory