Known vulnerabilities in Catalyst SD-WAN Manager (formerly SD-WAN vManage) 20.12.8
Vendor:
Cisco Systems, Inc
Version:
20.12.8
Software CPE:
cpe:2.3:a:cisco_systems:cisco_sd-wan_vmanage:*:*:*:*:*:*:*:*
Website:
https://www.cisco.com
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Vulnerabilities by Severity
20.12.8.1
26.2.1
26.1.2
20.18.4
20.15.6
20.12.8
20.9.10
26.1.1.2
20.18.3.1
20.15.5.3
20.15.4.5
20.12.7.2
20.9.9.2
20.15.4.3
20.15.5.1
20.18.2.2
26.1.1
20.15.5
20.18.2.1
20.15.4.2
20.12.5.3
20.12.6.1
20.9.8.2
20.12.4
20.12.3
20.15.2
20.9.7
20.16.1
20.12.5
20.16
20.15
20.15.1
20.14
20.13
20.9.4.1
20.12.1
20.3.7
20.12
20.10.1
20.6.2
20.9.3.4
20.6.6
20.11.1.2
20.10.1.2
20.9.3.2
20.6.5.5
20.6.4.2
20.6.3.4
20.6.3.3
20.11.1
20.9.3
20.11
20.10
20.8.1
20.6.5
20.9.1
20.6.4
20.9
20.8
20.7.2
20.6.3
20.3
20.7
20.7.1
20.6
20.6.1
20.5.2
20.3.4
20.5
20.4
20.4.2
19.2.99
20.5.0
20.4.1.2
20.3.3.1
20.3.2.1
20.1.3
19.2.31
20.4.1.1
20.1.1.1
20.1.0.20.1.1
19.3.0
19.2.099
19.2.097
19.2.0
19.1.0
18.4.4
18.4.303
18.4.302
18.4.3
18.4.0.1
18.4.0
18.3.6.1
18.3.3.1
18.3.1.1
18.3.8
18.3.7
18.3.6
18.3.5
18.3.4
18.3.3
18.3.2
18.3.1
18.3.0
17.2.10
17.2.9
17.2.8
17.2.6
17.2.5
17.2.4
17.2.3
17.2.2
17.2.1
17.2.0
20.5.1
20.3.3
20.1.12
19.2.4
18.4.6
20.4.0
20.4.1
18.2.0
20.3.0
20.3.2
19.2.1
20.3.1
20.1.2
20.1
19.3
20.1.1
19.2.3
17.2.7
19.2
18.4
18.3
19.2.2
18.4.5
-
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU141021 - Improper Link Resolution Before File Access ('Link Following') CVE-2026-20310 |
CWE-59 | Medium | 20.9.10, 20.12.8.1, 20.15.6, 20.18.4, 26.1.2 | 06.08.2026 |
SB2026080610 |
||
| #VU141022 - Cleartext Storage of Sensitive Information CVE-2026-20312 |
CWE-312 | Medium | 20.9.10, 20.12.8.1, 20.15.6, 20.18.4, 26.1.2 | 06.08.2026 |
SB2026080610 |
||
| #VU141023 - Improper Validation of Specified Quantity in Input CVE-2026-20313 |
CWE-1284 | Medium | 20.9.10, 20.12.8.1, 20.15.6, 20.18.4, 26.1.2 | 06.08.2026 |
SB2026080610 |
||
| #VU141019 - Improper input validation CVE-2026-20303 |
CWE-20 | Medium | 20.9.10, 20.12.8.1, 20.15.6, 20.18.4, 26.1.2 | 06.08.2026 |
SB2026080610 |
||
| #VU141020 - Improper Access Control CVE-2026-20304 |
CWE-284 | Medium | 20.9.10, 20.12.8.1, 20.15.6, 20.18.4, 26.1.2 | 06.08.2026 |
SB2026080610 |