Improper Link Resolution in Cisco Catalyst SD-WAN Software
CVE-2026-20313
7.7HIGH
What is CVE-2026-20313?
The Cisco Catalyst SD-WAN has been identified with vulnerabilities concerning improper link resolution before file access, categorized under the Common Weakness Enumeration (CWE) as CWE-1284. This issue could potentially lead to unauthorized access or exposure of sensitive data by mishandling file access requests. In response to this, Cisco has implemented software hardening measures to strengthen the security posture of their SD-WAN solutions.
Affected Version(s)
Cisco Catalyst SD-WAN Controller 20.6.4
Cisco Catalyst SD-WAN Controller 20.9.2
Cisco Catalyst SD-WAN Controller 20.3.6