importantSYS.SOURCE: The Hacker News• 2026-10-01T16:03:16+05:30
CISA Updates KEV with Critical Authentication Bypass Vulnerability in Cisco SD-WAN Manager
CISA has added a critical authentication bypass vulnerability (CVE-2026-76504) in Cisco Catalyst SD-WAN Manager to its KEV list due to active exploitation, with a CVSS score of 9.8. Organizations are urged to apply fixes immediately to prevent unauthorized admin access via crafted HTTP requests.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a critical authentication bypass flaw impacting Cisco Catalyst SD-WAN Manager to its Known Exploited Vulnerabilities (KEV), following reports of active exploitation.
The vulnerability, tracked as CVE-2026-76504 (CVSS score: 9.8), could allow an unauthenticated, remote attacker to access an affected system with
*** END OF TRANSMISSION ***