← nejvýznamnější zprávy · všechny zprávy

poslední zpráva

SPOJENO AI KEV ✓ (3 z 3) EPSS 0.92 (nejvyšší)

Critical Cisco Catalyst SD-WAN Manager API authentication bypass exploited in the wild (CVE-2026-76504)

OverviewOn September 30, 2026, Cisco published a security advisory for CVE-2026-76504, a critical API authentication bypass vulnerability affecting Cisco Catalyst SD-WAN Manager. The vulnerability has a CVSSv3.1 score of 9.8 and results from improper handling of URL encoding (CWE-177). An unauthenticated, remote attacker can send a crafted HTTP request that bypasses an authentication rule for a specific API endpoint, gaining access to the API with the privileges of the admin user.According to…

Číst originál na Rapid7 →

6 zpráv z 6 zdrojů · první · zachyceno CZ · EN/orig

Cisco US NL IT

tg: zneužíváno tg: zranitelnost tp: identita

CVE v události 3

CVEhodnoceníKEVEPSS
CVE-2026-20127 10.0 3.1 · cisco KEV ✓ 0.88
CVE-2026-20182 10.0 3.1 · cisco KEV ✓ 0.92
CVE-2026-76504 9.8 3.1 · cisco KEV ✓ –

Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE. Advisory v textu uvádí CVSS 9.8.

Jak se o tom psalo 6

  1. · Rapid7 US nadpis události

    Critical Cisco Catalyst SD-WAN Manager API authentication bypass exploited in the wild (CVE-2026-76504)

    OverviewOn September 30, 2026, Cisco published a security advisory for CVE-2026-76504, a critical API authentication bypass vulnerability affecting Cisco Catalyst SD-WAN Manager. The vulnerability has a CVSSv3.1 score of 9.8 and results from improper handling of URL encoding (CWE-177). An unauthenticated, remote attacker can send a crafted HTTP request that bypasses an authentication rule for a specific API endpoint, gaining access to the API with the privileges of the admin user.According to…

  2. · BleepingComputer US

    Cisco warns of new SD-WAN zero-day exploited in attacks

    Cisco released security updates to address a critical zero-day in the Catalyst SD-WAN Manager (tracked as CVE-2026-76504) that attackers are actively exploiting to escalate to admin privileges. [...]

  3. · NCSC-NL NL

    NCSC-2026-0395 [1.00] [M/H] Kwetsbaarheid verholpen in Cisco Catalyst SD-WAN Manager

    Cisco heeft een kwetsbaarheid verholpen in Cisco Catalyst SD-WAN Manager. De kwetsbaarheid bevindt zich in een API van Cisco Catalyst SD-WAN Manager. Door onjuiste verwerking van URI-encoding kunnen ongeauthenticeerde kwaadwillenden authenticatiemechanismen omzeilen. Hierdoor kan de kwaadwillende administratieve toegang tot het systeem verkrijgen en de controle over het systeem overnemen.

  4. · CSIRT Itálie (ACN) IT

    Cisco: rilevato sfruttamento in rete di una vulnerabilità in Catalyst SD-WAN Manager

    Cisco ha rilevato lo sfruttamento in rete di una vulnerabilità critica, identificata tramite la CVE-2026-76504, in Cisco Catalyst SD-WAN Manager, soluzione per la gestione di ambienti SD-WAN.

  5. · Cisco PSIRT US

    Cisco Catalyst SD-WAN Manager API Authentication Bypass Vulnerability

    A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to access an affected system with privileges of the admin user. This vulnerability is due to improper handling of URI encoding in an HTTP request, which allows the request to bypass an authentication rule that is intended to restrict access to a specific API endpoint. An attacker could exploit this vulnerability by sending a crafted HTTP request to…

  6. · zachyceno · CISA KEV US

    Cisco Catalyst SD-WAN Manager Hex Encoding Vulnerability (CVE-2026-76504)

    CISA added CVE-2026-76504 to the Known Exploited Vulnerabilities catalog. Affected product: Cisco Catalyst SD-WAN Manager. Remediation due date: 2026-10-03.