SECURITYCYBERSCOOP
Cisco customers encounter another SD-WAN zero-day under attack
Cisco customers are facing another actively exploited zero-day vulnerability (CVE-2026-20245) in its SD-WAN management software, marking the seventh such exploit this year. The flaw allows authenticated attackers to execute commands as root, but Cisco warns no patch or workaround is currently available, and exploitation requires existing credentials or prior vulnerabilities.
Mentioned
Related Signal
Adjacent reporting
- Ivanti customers confront yet another actively exploited zero-day
- Yet another Cisco SD-WAN 0-day under attack, and no patch in sight
- Ivanti warns of new EPMM flaw exploited in zero-day attacks
- Cisco zero-day under ongoing attack by persistent threat group
- A critical Palo Alto PAN-OS zero-day is being exploited in the wild
- Cisco warns of unpatched SD-WAN zero-day exploited in attacks