Improper Authorization in Catalyst SD-WAN Manager (formerly SD-WAN vManage) - CVE-2020-3374
Published: July 30, 2020
Vulnerability details
The vulnerability allows a remote attacker to bypass authorization checks.
The vulnerability exists due to insufficient authorization checking on the affected system. A remote authenticated attacker can send specially crafted HTTP requests and gain privileges beyond what would normally be authorized for their configured user authorization level.