CRITICALZero Day
Global

New Cisco SD-WAN Zero-Day Grants Admin Access

·Source: Bank Info Security

Updated:

Executive Summary

Broken vdaemon Peering Authentication Enables Unauthenticated Admin Access A maximum-severity vulnerability in Cisco Catalyst SD-WAN Controller is being actively exploited, giving attackers administrative privileges without auth

Analysis

Broken vdaemon Peering Authentication Enables Unauthenticated Admin Access A maximum-severity vulnerability in Cisco Catalyst SD-WAN Controller is being actively exploited, giving attackers administrative privileges without authentication. The authentication bypass vulnerability stems from a broken peering authentication mechanism.

Indicators of Compromise (2)

URL (1)
https://ismg-cdn.nyc3.cdn.digitaloceanspaces.com/articles/new-cisco-sd-wan-zero-day-grants-admin-access-image_small-6-a-31708.jpg
Domain (1)
ismg-cdn.nyc3.cdn.digitaloceanspaces.com
Source Attribution

Originally published by Bank Info Security on May 16, 2026.

Related Threats