#VU116085 Improper access control in Cisco SD-WAN vEdge Routers - CVE-2025-20339
Published: September 24, 2025
Cisco SD-WAN vEdge Routers
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper enforcement of the "implicit deny all" at the end of a configured ACL when processing IPv4 packets. A remote attacker can bypass implemented security restrictions and send unauthorized traffic to a device interface.