にゃん☆たく/takumi.a[verified]@taku888infinityDisclosure
Cisco has disclosed multiple vulnerabilities in SD‑WAN Manager that could enable attackers to obtain root privileges and alter files, with no evidence of active exploitation or PoC provided.
FirstPassLab[verified]@Felix1325456Active Exploitation
The post details that three Cisco SD‑WAN CVEs are actively exploited and that no workarounds exist, prompting a CISA Emergency Directive and emphasizing patching as the sole mitigation, while highlighting that CVSS scores alone underestimate real‑world risk.
FirstPassLab[verified]@Felix1325456Exploit
The post outlines how attackers chain multiple Cisco SD‑WAN CVEs, provides hardening steps and exact patch versions, but gives no PoC or exploit code.
CVETodo[verified]@CveTodoDisclosure
The post describes a privilege escalation flaw in Cisco Catalyst SD-WAN Manager that lets low‑privileged authenticated users gain root access via an insecure REST API authentication mechanism.
CERT-PY@CERTpyGeneral
The post lists three Cisco CVEs and provides a link for more information, but offers no further details or context.
CVE@CVEnewDisclosure
The text announces a privilege‑escalation vulnerability in Cisco Catalyst SD-WAN Manager that allows local low‑privilege attackers to gain root access.
The Hacker Wire@TheHackerWireDisclosure
The post announces a high‑severity vulnerability in Cisco Catalyst SD-WAN Manager that permits local privilege escalation from low privileges to root on the underlying operating system.