File Overwrite Vulnerability in Cisco Catalyst SD-WAN Manager
CVE-2025-20213
What is CVE-2025-20213?
A security flaw in the CLI of Cisco Catalyst SD-WAN Manager allows authenticated, local attackers with read-only credentials to overwrite arbitrary files on the device's local file system. This vulnerability arises from improper access controls, enabling attackers to execute crafted commands that compromise file integrity. Successful exploitation provides the attacker with the potential to escalate privileges to the root user, thus posing serious risks to device security and data integrity.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco Catalyst SD-WAN Manager 20.1.12
Cisco Catalyst SD-WAN Manager 19.2.1
Cisco Catalyst SD-WAN Manager 18.4.4
References
CVSS V3.1
Timeline
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved