0xor0ne[verified]@0xor0nePatch
Rapid7 blog discusses CVE‑2026‑20182, an authentication bypass in Cisco Catalyst SD‑WAN Controller, noting that the vulnerability has been fixed by the vendor.
0xor0ne[verified]@0xor0nePatch
The tweet links to a Rapid7 post about CVE‑2026‑20182, an authentication bypass in Cisco Catalyst SD‑WAN Controller, and indicates the issue has been fixed.
0xor0ne[verified]@0xor0neDisclosure
Rapid7 reports a new authentication bypass (CVE‑2026‑20182) in Cisco Catalyst SD‑WAN Controller caused by spoofed vHub device types in DTLS, and Cisco has issued a fix.
nekono_nanomotoni[verified]@nekono_nahaActive Exploitation
Rapid7 has identified an exploitation chain for CVE-2026-20182 in Cisco SD‑WAN vdaemon, with hundreds of publicly exposed devices on UDP/12346 and TCP/830 indicating active exploitation in the wild.
Co11ateral[verified]@co11ateralExploit
The post announces CVE-2026-20182, an authentication bypass in Cisco Catalyst SD-WAN Controller vHub, and links to a Metasploit pull request that supplies a functional exploit.
Azubuike Ibe[verified]@ai_dev_officialActive Exploitation
Cisco disclosed CVE-2026-20245, a root‑execution flaw in its SD‑WAN Manager, with evidence of active exploitation and no patch yet available, prompting immediate hardening and monitoring measures.
Nicolas Krassas[verified]@DinosnDisclosure
The provided text announces a new Cisco SD-WAN vulnerability (CVE-2026-20182) that allows unauthenticated attackers to bypass vHub authentication and compromise the control plane, with a link to a detailed blog article.
Blue Team News[verified]@blueteamsec1Active Exploitation
CISA added CVE-2026-20182 to the KEV list after evidence of admin‑access exploitation, indicating active attacks are occurring.