Cisco avdekker kritisk SD-WAN null-dagers sårbarhet som utnyttes i angrep

5 kilder
  • Cisco advarte onsdag om at angripere utnytter CVE-2026-76504, en CVSS 9.8 autentiseringsomgåelse i Catalyst SD-WAN Manager, for å få administratorrettigheter eksternt.
  • Sårbarheten, som ble oppdaget under en støttesak, misbruker feilaktig URI-koding for å omgå API-autentisering; den påvirker alle installasjoner uavhengig av konfigurasjon.
  • Rapid7 oppfordrer til akutt patching utenom vanlige sykluser, og påpeker at dette er den femte utnyttede SD-WAN null-dagers sårbarheten i 2026.
Kilder (5)
  1. 1 Cisco Warns of Attackers Exploiting Critical Authentication Bypass in SD-WAN Manager thehackernews.com
  2. 2 Cisco warns of new SD-WAN zero-day exploited in attacks www.bleepingcomputer.com
  3. 3 Rapid7 www.rapid7.com
  4. 4 Cisco says attackers are exploiting critical authentication bypass in SD-WAN Manager news.lavx.hu
  5. 5 Cisco Warns of Actively Exploited Critical SD-WAN Flaw Allowing Hackers to Gain Administrator Access the420.in