ID

VAR-202602-4602


CVE

CVE-2026-20128


TITLE

Cisco Systems Cisco Catalyst SD-WAN Manager Vulnerability in storing passwords in a recoverable format in

Trust: 0.8

sources: JVNDB: JVNDB-2026-006163

DESCRIPTION

A vulnerability in the Data Collection Agent (DCA) feature of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to gain DCA user privileges on an affected system. This vulnerability is due to the presence of a credential file for the DCA user on an affected system. An attacker could exploit this vulnerability by sending a crafted HTTP request and reading the file that contains the DCA password from that affected system. A successful exploit could allow the attacker to access another affected system and gain DCA user privileges. Note: Cisco Catalyst SD-WAN Manager releases 20.18 and later are not affected by this vulnerability. All information handled by the software may be rewritten. Furthermore, the software may stop working completely. Furthermore, attacks exploiting this vulnerability may affect other software as well

Trust: 1.62

sources: NVD: CVE-2026-20128 // JVNDB: JVNDB-2026-006163

AFFECTED PRODUCTS

vendor:ciscomodel:catalyst sd-wan managerscope:eqversion:20.12.6

Trust: 1.0

vendor:ciscomodel:catalyst sd-wan managerscope:ltversion:20.12.5.3

Trust: 1.0

vendor:ciscomodel:catalyst sd-wan managerscope:ltversion:20.18

Trust: 1.0

vendor:ciscomodel:catalyst sd-wan managerscope:ltversion:20.15.4.2

Trust: 1.0

vendor:ciscomodel:catalyst sd-wan managerscope:gteversion:20.11

Trust: 1.0

vendor:ciscomodel:catalyst sd-wan managerscope:ltversion:20.9.8.2

Trust: 1.0

vendor:ciscomodel:catalyst sd-wan managerscope:gteversion:20.13

Trust: 1.0

vendor:ciscomodel:catalyst sd-wan managerscope:gteversion:20.16

Trust: 1.0

vendor:シスコシステムズmodel:cisco catalyst sd-wan managerscope:eqversion:20.9.8.2

Trust: 0.8

vendor:シスコシステムズmodel:cisco catalyst sd-wan managerscope:eqversion:20.16 that's all 20.18

Trust: 0.8

vendor:シスコシステムズmodel:cisco catalyst sd-wan managerscope:eqversion:20.13 that's all 20.15.4.2

Trust: 0.8

vendor:シスコシステムズmodel:cisco catalyst sd-wan managerscope:eqversion:20.11 that's all 20.12.5.3

Trust: 0.8

vendor:シスコシステムズmodel:cisco catalyst sd-wan managerscope:eqversion:20.12.6

Trust: 0.8

vendor:シスコシステムズmodel:cisco catalyst sd-wan managerscope: - version: -

Trust: 0.8

vendor:シスコシステムズmodel:cisco catalyst sd-wan managerscope:eqversion: -

Trust: 0.8

sources: JVNDB: JVNDB-2026-006163 // NVD: CVE-2026-20128

CVSS

SEVERITY

CVSSV2

CVSSV3

psirt@cisco.com: CVE-2026-20128
value: HIGH

Trust: 1.0

OTHER: JVNDB-2026-006163
value: HIGH

Trust: 0.8

psirt@cisco.com: CVE-2026-20128
baseSeverity: HIGH
baseScore: 7.5
vectorString: CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: HIGH
privilegesRequired: HIGH
userInteraction: NONE
scope: CHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 0.8
impactScore: 6.0
version: 3.1

Trust: 1.0

OTHER: JVNDB-2026-006163
baseSeverity: HIGH
baseScore: 7.5
vectorString: CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: HIGH
privilegesRequired: HIGH
userInteraction: NONE
scope: CHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: JVNDB: JVNDB-2026-006163 // NVD: CVE-2026-20128

PROBLEMTYPE DATA

problemtype:CWE-257

Trust: 1.0

problemtype:Password storage in recoverable form (CWE-257) [ others ]

Trust: 0.8

sources: JVNDB: JVNDB-2026-006163 // NVD: CVE-2026-20128

PATCH

title:Cisco Catalyst SD-WAN Vulnerabilitiesurl:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v

Trust: 0.8

sources: JVNDB: JVNDB-2026-006163

EXTERNAL IDS

db:NVDid:CVE-2026-20128

Trust: 2.6

db:JVNDBid:JVNDB-2026-006163

Trust: 0.8

sources: JVNDB: JVNDB-2026-006163 // NVD: CVE-2026-20128

REFERENCES

url:https://sec.cloudapps.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-sdwan-authbp-qwcx8d4v

Trust: 1.0

url:https://nvd.nist.gov/vuln/detail/cve-2026-20128

Trust: 0.8

sources: JVNDB: JVNDB-2026-006163 // NVD: CVE-2026-20128

SOURCES

db:JVNDBid:JVNDB-2026-006163
db:NVDid:CVE-2026-20128

LAST UPDATE DATE

2026-03-21T23:34:27.586000+00:00


SOURCES UPDATE DATE

db:JVNDBid:JVNDB-2026-006163date:2026-03-06T06:39:00
db:NVDid:CVE-2026-20128date:2026-03-20T22:16:25.377

SOURCES RELEASE DATE

db:JVNDBid:JVNDB-2026-006163date:2026-03-06T00:00:00
db:NVDid:CVE-2026-20128date:2026-02-25T17:25:30.150