📦 Sd Wan Vmanage

by Cisco

🔍 What is Sd Wan Vmanage?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-20214

CRITICAL CVSS 9.1 Aug 3, 2023

An unauthenticated remote attacker can exploit insufficient request validation in the REST API of Cisco SD-WAN vManage software to gain read or limited write permissions to the configuration. This aff...

CVE-2021-44228

CRITICAL CVSS 10.0 Dec 10, 2021

CVE-2021-44228 (Log4Shell) is a critical remote code execution vulnerability in Apache Log4j2 that allows attackers to execute arbitrary code by exploiting JNDI lookups in log messages. This affects a...

CVE-2021-1468

CRITICAL CVSS 9.8 May 6, 2021

Multiple vulnerabilities in Cisco SD-WAN vManage Software allow unauthenticated remote attackers to execute arbitrary code or access sensitive information, and authenticated local attackers to escalat...

CVE-2021-1505

CRITICAL CVSS 9.8 May 6, 2021

CVE-2021-1505 is a critical vulnerability in Cisco SD-WAN vManage software that allows unauthenticated remote attackers to execute arbitrary code or access sensitive information. It also enables authe...

CVE-2021-1508

CRITICAL CVSS 9.8 May 6, 2021

Multiple vulnerabilities in Cisco SD-WAN vManage Software allow unauthenticated remote attackers to execute arbitrary code or access sensitive information, and authenticated local attackers to escalat...

CVE-2021-1225

CRITICAL CVSS 9.1 Jan 20, 2021

CVE-2021-1225 allows unauthenticated remote attackers to execute SQL injection attacks against Cisco SD-WAN vManage Software's web management interface. This vulnerability exists due to improper input...

CVE-2022-20739

HIGH CVSS 7.3 Apr 15, 2022

This vulnerability allows authenticated low-privileged users on Cisco SD-WAN vManage systems to escalate privileges to root by injecting commands into a file executed by administrators. Attackers must...

CVE-2021-1284

HIGH CVSS 8.8 May 6, 2021

This vulnerability allows an unauthenticated attacker with network access to adjacent Cisco SD-WAN vEdge devices to bypass authentication and authorization on Cisco SD-WAN vManage Software. The attack...

CVE-2021-1479

HIGH CVSS 7.8 Apr 8, 2021

CVE-2021-1479 allows unauthenticated remote attackers to execute arbitrary code on Cisco SD-WAN vManage software, or authenticated local attackers to gain escalated privileges. This affects organizati...

CVE-2021-1137

HIGH CVSS 7.8 Apr 8, 2021

This vulnerability in Cisco SD-WAN vManage Software allows unauthenticated remote attackers to execute arbitrary code or authenticated local attackers to gain escalated privileges. It affects organiza...