By Elias Virtanen
Publication Date: 2026-09-30 23:11:00
Cisco pushed emergency guidance on September 30, 2026, warning that attackers are actively exploiting a critical, unauthenticated zero-day in Catalyst SD-WAN Manager, the dashboard that lets administrators monitor and control as many as 6,000 SD-WAN devices from one console. The flaw, tracked as CVE-2026-76504 in the CVE.org database, carries a near-maximum CVSS score of 9.8 and lets a remote attacker with no login credentials reach the product’s API with full administrator privileges, according to Cisco’s advisory as reported by BleepingComputer and The Hacker News.



