CERT.PY warns on Cisco Catalyst SD-WAN flaw
CERT.PY flagged a high-severity issue in Cisco Catalyst SD-WAN. Cisco also patched five flaws in the same round, including three critical ones.
CERT.PY published an advisory on a high-severity vulnerability in Cisco Catalyst SD-WAN. The visible excerpt does not identify the exact CVE or confirm active exploitation, while Cisco issued a broader notice covering five fixes in the same round, three of them critical.
CERT.PY published a notice about a high-severity vulnerability in Cisco Catalyst SD-WAN products. The visible excerpt says the flaw could allow an attacker to exploit it, but it does not identify the exact CVE or confirm active exploitation.
What did Cisco report about these flaws?
Cisco published an official advisory on multiple vulnerabilities in Cisco Catalyst SD-WAN Software. According to the advisory cited by SecurityOnline.info, at least three of the issues are critical and two are high severity, and all of them were patched in the same update cycle.
The technical detail attributed to the advisory says the critical vulnerabilities allow a remote authenticated attacker to run arbitrary code and fully compromise the affected device. That raises the operational impact in corporate SD-WAN environments, since the problem is no longer limited to a brief service disruption.
What does Eclypsium say?
Eclypsium mentioned the Cisco Catalyst SD-WAN family in a group of network products with authentication bypass vulnerabilities and CVSS scores close to 10.0. That reference reinforces that, for researchers, flaws in this kind of equipment sit in the highest severity range.
The mention appears in the report Eclypsium flags 1,051 CVEs in infrastructure advisories, published by SecurityBrief.news. In that coverage, Cisco Catalyst SD-WAN appears alongside other infrastructure products that researchers tracked closely because of the associated risk level.
Sources
- Cisco patched five Cisco SD-WAN vulnerability issues in Catalyst SD-WAN Softwaresecurityonline.info· SecurityOnline.info
- Eclypsium flags 1,051 CVEs in infrastructure advisoriessecuritybrief.news· SecurityBrief.news
- Noticiascert.gov.py· CERT.PY
- Cisco patched five Cisco SD-WAN vulnerability issues in Catalyst SD-WAN Softwaresecurityonline.info· SecurityOnline.info



