Cisco has released a security update to address vulnerabilities in Cisco products.
The affected product is the Cisco Catalyst SD-WAN Manager, and the following versions are affected: 20.9, 20.9.10.1, 20.12.8.2, 20.15.6.1, 20.18.4.1, 26.1.2.1, 26.2.1.
The vulnerability that has been addressed is CVE-2026-76504.
This vulnerability is an authentication bypass issue caused by improper handling of hexadecimal encoding in the Cisco Catalyst SD-WAN Manager. Authentication bypass is an issue that can allow access without proper authentication.
Cisco has provided a Vulnerability Patch for this vulnerability through its latest update.
Users of the affected products should update to the latest version of the Vulnerability Patch following the instructions on the reference site.