AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-20304

CRITICAL · CVSS 9.9 EPSS 0.25%

Source: NVD + CISA KEV + EPSS · Published 2026-08-05 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

Cisco Catalyst SD-WAN products are vulnerable due to improper access control issues, which could allow unauthorized access to sensitive information or system functions. The impact is critical, with a CVSS score of 9.9, indicating a high potential for exploitation. Organizations using affected Cisco products should prioritize applying the software hardening release to mitigate these vulnerabilities.

CVE
CVE-2026-20304
Severity
CRITICAL
CVSS
9.9
EPSS
0.25%
Cisco

Original NVD Description

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20304 are related to improper access control issues that are grouped under the Common Weakness Enumeration (CWE) CWE-284.