Cisco has released fixes for a vulnerability in its Catalyst SD-WAN Manager software after becoming aware of limited exploitation of the flaw, which could allow an authenticated attacker to create or overwrite files that may later be used to gain root privileges.
The vulnerability, tracked as .
A successful root compromise could have consequences across multiple branches and business applications, analysts said.
“Root access to Cisco Catalyst SD-WAN Manager can become a network-wide control-plane compromise, and that can affect branch uptime, traffic segmentation, cloud connectivity, and the availability and integrity of critical business applications,” said Keith Prabhu, founder and CEO at Confidis. “This could lead to revenue loss, operational disruption if locations lose WAN connectivity, security exposure, incident response costs, and overall loss of reputation.”
, associate practice leader at HFS Research.
That could make attacks harder to detect, particularly if disruptions affect branch connectivity, SaaS access or traffic routing before security teams identify them as malicious, he said.
A broader management-plane concern
Security teams should view vulnerabilities in SD-WAN orchestration systems as a broader management-plane risk rather than only a .
SOCIAL SHARE CARD GENERATOR