Cisco Catalyst SD-WAN Manager Auth Bypass via URI Encoding
CVE-2026-76504 Published on September 30, 2026

Cisco Catalyst SD-WAN Manager System Account Authorization Bypass Vulnerability
A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to access an affected system with privileges of the admin user. This vulnerability is due to improper handling of URI encoding in an HTTP request, which allows the request to bypass an authentication rule that is intended to restrict access to a specific API endpoint. An attacker could exploit this vulnerability by sending a crafted HTTP request to the API of the affected system. A successful exploit could allow the attacker to bypass authentication and gain access to the API as the admin user.

NVD

Vulnerability Analysis

CVE-2026-76504 is exploitable with network access, and does not require authorization privileges or user interaction. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to be critical as this vulnerability has a high impact to the confidentiality, integrity and availability of this component.

Attack Vector:
NETWORK
Attack Complexity:
LOW
Privileges Required:
NONE
User Interaction:
NONE
Scope:
UNCHANGED
Confidentiality Impact:
HIGH
Integrity Impact:
HIGH
Availability Impact:
HIGH

Weakness Type

What is a Hex Encoding Vulnerability?

The software does not properly handle when all or part of an input has been URL encoded.

CVE-2026-76504 has been classified to as a Hex Encoding vulnerability or weakness.


Products Associated with CVE-2026-76504

Want to know whenever a new CVE is published for Cisco Catalyst Sd Wan Manager? stack.watch will email you.

 

Affected Versions

Cisco Catalyst SD-WAN Manager: