Security Advisory Desk
mediumQCS priority 82/100Cisco

Cisco Catalyst SD-WAN Manager Information Disclosure Vulnerability

A security flaw in Cisco Catalyst SD-WAN Manager lets unauthorized users with some access see sensitive information in plain text, including passwords. This happens because certain data templates aren't properly protected by encryption. Attackers with low-level access can exploit this by viewing system or remote logs, potentially leading to deeper network security breaches. Cisco has released software updates to fix the issue, but no temporary workarounds are available.

Published 5/8/2026, 4:00:00 pmVerified 6/8/2026, 4:16:13 amRevision 1
Cisco medium network security advisory visual

In plain language

What this advisory means

A security flaw in Cisco Catalyst SD-WAN Manager lets unauthorized users with some access see sensitive information in plain text, including passwords. This happens because certain data templates aren't properly protected by encryption. Attackers with low-level access can exploit this by viewing system or remote logs, potentially leading to deeper network security breaches. Cisco has released software updates to fix the issue, but no temporary workarounds are available.

Technical explanation

How the issue affects the environment

The vulnerability in Cisco Catalyst SD-WAN Manager's web interface results from improper access control enforcement over specific template types, which are excluded from the encryption allowlist. An authenticated attacker with low privileges can exploit this by accessing local or remote log files where sensitive data, such as authentication credentials, is stored unencrypted. This exposure allows the attacker to retrieve clear-text sensitive information, increasing risk of unauthorized access to network infrastructure and connected services. Cisco addressed the vulnerability in software updates starting with version 20.9.10 for release 20.9 and subsequent fixed releases.

Operational impact

Why teams should care

Exploitation can lead to unauthorized disclosure of sensitive authentication credentials, enabling attackers to escalate their access or compromise additional network infrastructure components and services. This could degrade organizational security posture, increase risk of data breaches, and disrupt network operations, thereby impacting business continuity and trust.

Immediate action

Cisco strongly recommends upgrading to fixed software releases listed in the advisory. Applying these updates fully remediates the vulnerability and helps prevent exposure to information disclosure risks.

Affected and fixed releases

Affected versionsAll releases earlier than 20.9
Fixed versions20.9.10, 20.12.8, 20.15.6, 20.18.4, 26.1.2, 26.2.1

Temporary risk reduction

Cisco states there are no workarounds to mitigate this vulnerability. Customers should apply the fixed software updates as soon as possible to address the issue.

Evidence and validation checklist

  • Cisco Security Advisory published on 2026-08-05
  • CVE-2026-20294 assigned
  • Description of insufficient access control allowing viewing of sensitive clear-text info
  • No workarounds are available
  • Fixed software versions and upgrade recommendations provided
  • No known public exploitation at time of advisory publication

Authoritative reference

Cisco PSIRT Advisories

QCS detected and normalized this record from the official source. Vendor guidance remains authoritative.

Open source
Cisco Catalyst SD-WAN Manager Information | Advisory | QCS