CVE-2026-20310Patch

MEDIUMCVSS 9.1 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20310 are related to improper link resolution before file access issues that are grouped under the Common Weakness Enumeration (CWE) CWE-59.

4.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-59

Priority

MEDIUM

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Public PoC and exploit tooling are both present
  • Patch or workaround signal is available
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Exploit tool or code specified in 1 signal
  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 3 signals
  • Disclosure: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-08-05); latest day: 1
  • 3 total mentions across 3 days

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-08-05: 1Mentions · 2026-08-11: 1Mentions · 2026-08-13: 1PoC Mentioned / Linked · 2026-08-11: 1Exploit Tool / Code · 2026-08-11: 1Patch / Workaround · 2026-08-11: 1Patch / Workaround · 2026-08-13: 1Technical Details · 2026-08-05: 1Technical Details · 2026-08-11: 1Technical Details · 2026-08-13: 108-0508-1108-13
Signal classification2 categories
Patch
266.7%
Disclosure
133.3%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-08-051
Disclosure1
2026-08-111
Patch1
2026-08-131
Patch1
Full discourse3 posts
  • iototsecnews@iototsecnews
    Patch

    Cisco Catalyst SD-WAN の複数の深刻な脆弱性が FIX:不適切な入力検証やアクセス・コントロール https://iototsecnews.jp/2026/08/06/cisco-patched-multiple-critical-vulnerabilities-in-catalyst-sd-wan-update-now/ Cisco Catalyst SD-WAN Software において、入力検証の不備やアクセス制御の問題などに起因する複数の深刻な脆弱性が発見されました。対象となる CVE は CVE-2026-20303/CVE-2026-20304/CVE-2026-20310 (CVSS:9.9)、CVE-2026-20312 (CVSS:8.8)、CVE-2026-20313 (CVSS:7.7) です。これらを悪用されると、機密情報の露出や不正なファイルアクセスなど、システム全体へ甚大な被害が及ぶ恐れがあります。回避策となる設定変更が存在しないため、修正済みバージョンへのアップデートが必要です。運用環境の更新状況を確認し、迅速に対応を進めてください 。 #CatalystSDWAN #Cisco #CVE202620303 #CVE202620304 #CVE202620310 #CVE202620312 #CVE202620313 #Vulnerability

    Post summary

    Several critical CVEs were discovered in Cisco Catalyst SD‑WAN; users are advised to upgrade to the patched versions as no workarounds exist.

    01001182
    507 followersView on X
  • Kaitan ID Security@KaitanSecurity
    Disclosure

    🚨 CRITICAL — CVE-2026-20310 As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering … CVSS 9.1 🔴 No patch yet Full analysis → https://sec.kaitan.id/cves/CVE-2026-20310 #Cisco #CyberSecurity #InfoSec

    Post summary

    A critical vulnerability CVE-2026-20310 with CVSS 9.1 has been disclosed by Cisco, with no patch released yet; a full analysis is available at the provided URL.

    0101056
    88 followersView on X
  • BT Haberler@BTHaberler
    Patch

    Cisco, SD-WAN ve IOS XE'de Üçü CVSS 9.9 Olan 12 Kritik Açığı Kapattı Cisco, iç güvenlik incelemesi kapsamında Catalyst SD-WAN ve IOS XE yazılımlarını etkileyen 12 açığı kapatan güncellemeler yayınladı; SD-WAN tarafındaki üç açık maksimuma yakın CVSS 9.9 aldı! • CVE-2026-20303, CVE-2026-20304 ve CVE-2026-20310 (üçü de CVSS 9.9), sırasıyla giriş doğrulaması ve yol geçişi eksikliği, yetersiz erişim kontrolü ve bağlantı çözümleme sırası hatasından kaynaklanıyor; ayrıca CVSS 8.8'lik açık metin hassas veri depolama sorunu da bulunuyor. • IOS XE tarafında CVE-2026-20267 ile CVE-2026-20273 arasındaki yedi açık, arabellek taşması, komut enjeksiyonu ve giriş doğrulaması eksikliklerini kapsıyor; en yüksek CVSS puanı 9.8. • Cisco, bu açıkların şu ana kadar aktif olarak istismar edildiğine dair bir bilgi bulunmadığını açıkladı; ancak sistem yönetim arabirimini etkileyen ayrı bir açık olan CIMCown (CVE-2026-20200) için halka açık kanıt kodu zaten mevcut. Kurumsal ağların omurgasını oluşturan SD-WAN ve yönlendirici yazılımlarında aynı anda bu kadar çok maksimum puanlı açığın ortaya çıkması, ağ ekiplerinin güncelleme önceliklerini yeniden gözden geçirmesini gerektiriyor. #SiberGüvenlik #Cisco #SDWAN

    Post summary

    Cisco released patches for 12 high‑severity CVEs affecting SD‑WAN and IOS XE, with no evidence of active exploitation; a public PoC exists for a separate CVE‑2026‑20200.

    00000128
    38 followersView on X

Explore more