Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability

Vulnerability

A vulnerability exists in the CLI of Cisco Catalyst SD-WAN Manager that could allow an authenticated, local attacker to gain root privileges on the underlying operating system. This issue arises from inadequate input validation. An authenticated attacker with read-only access could exploit this vulnerability by sending a crafted request to the CLI. Successful exploitation would result in elevated privileges on the operating system.

Impact

Exploitation of this vulnerability could lead to unauthorized root access on the underlying operating system.

Remediation

Cisco has released free software updates to address this vulnerability. Customers with service contracts should obtain these updates through their usual channels. For those without service contracts, contact the Cisco Technical Assistance Center (TAC) for assistance. This vulnerability is part of a collection of vulnerabilities in Cisco Catalyst SD-WAN Manager, and customers are advised to upgrade to a fixed release. Consult the Cisco Security Advisories page for guidance on exposure and upgrade solutions.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
3.1
impact
7.5
exploitability
3.8
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.