CVE-2026-20182CRITICAL 10.0CISA KEVEPSS p99.5%

CVE-2026-20182CVE-2026-20182

cisco / catalyst_sd-wan_manager

Description

May 2026: This security advisory provides the details and fix information for a vulnerability that was discovered and fixed after the was disclosed in February 2026. This new advisory is for a new vulnerability in the control connection handshaking. The section of this advisory includes Show Control Connections guidance to help with system checks.  A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, and Cisco Catalyst SD-WAN Validator, formerly SD-WAN vBond, could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges on an affected system. This vulnerability exists because the peering authentication mechanism in an affected system is not working properly. An attacker could exploit this vulnerability by sending crafted requests to the affected system. A successful exploit could allow the attacker to log in to an affec

Scoring

CVSS 3.110.0 (CRITICAL)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS77.90% probability of exploitation · percentile 99.5% · 2026-06-18T12:00:27Z
Published2026-05-14
Last modified2026-06-16

CISA KEV entry

Added to KEV: 2026-05-14

Underlying weaknesses· 1

CWE-287

References

  1. https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa-EHchtZk
  2. https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa2-v69WY2SW
  3. https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-20182

1

TypeTargetConfidenceTier
WeaknessImproper Authenticationcwe-2870%live

(incoming)1

TypeTargetConfidenceTier
KEVEntryCisco Catalyst SD-WAN Controller Authentication Bypass Vulnerabilitykev-cve-2026-201820%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2026-20127
CVE
Cisco Catalyst SD-WAN Manager Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
CVE
CVE-2026-20129
CVE
Cisco Catalyst SD-WAN Manager Storing Passwords in a Recoverable Format Vulnerability
CVE
Cisco Catalyst SD-WAN Manager Incorrect Use of Privileged APIs Vulnerability
CVE
Cisco Catalyst SD-WAN Manager Improper Encoding or Escaping of Output Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.