{"id":54516,"date":"2026-05-14T12:03:01","date_gmt":"2026-05-14T12:03:01","guid":{"rendered":"https:\/\/zero.redgem.net\/?p=54516"},"modified":"2026-05-14T12:03:01","modified_gmt":"2026-05-14T12:03:01","slug":"cisco-catalyst-sd-wan-manager-xml-external-entity-injection-vulnerability","status":"publish","type":"post","link":"https:\/\/zero.redgem.net\/?p=54516","title":{"rendered":"Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability_CVE-2026-20224"},"content":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;&#8221;,&#8221;description&#8221;:&#8221;A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, remote attacker to read arbitrary files that are stored in an affected system. The attacker does not need to have valid user credentials.\\r\\n\\r\\nThis vulnerability is due to improper handling of XML External Entity (XXE) entries when parsing an XML file. An attacker could exploit this vulnerability by sending a crafted request to an affected system. A successful exploit could allow the attacker to read arbitrary files that are stored in the affected system.&#8221;,&#8221;published&#8221;:&#8221;2026-05-14T16:08:46.786Z&#8221;,&#8221;modified&#8221;:&#8221;2026-05-14T16:08:46.786Z&#8221;,&#8221;type&#8221;:&#8221;cve&#8221;,&#8221;title&#8221;:&#8221;Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability&#8221;,&#8221;source&#8221;:&#8221;cisco&#8221;,&#8221;references&#8221;:&#8221;https:\/\/sec.cloudapps.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-sdwan-mltvnps2-JxpWm7R\\nhttps:\/\/sec.cloudapps.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-sdwan-rpa-EHchtZk&#8221;,&#8221;id&#8221;:&#8221;CVE-2026-20224&#8243;,&#8221;bulletinFamily&#8221;:&#8221;&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:null,&#8221;sourceData&#8221;:&#8221;Cisco Cisco Catalyst SD-WAN Manager 20.1.12\\nCisco Cisco Catalyst SD-WAN Manager 19.2.1\\nCisco Cisco Catalyst SD-WAN Manager 18.4.4\\nCisco Cisco Catalyst SD-WAN Manager 18.4.5\\nCisco Cisco Catalyst SD-WAN Manager 20.1.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.1.1\\nCisco Cisco Catalyst SD-WAN Manager 19.3.0\\nCisco Cisco Catalyst SD-WAN Manager 19.2.2\\nCisco Cisco Catalyst SD-WAN Manager 19.2.099\\nCisco Cisco Catalyst SD-WAN Manager 18.3.6\\nCisco Cisco Catalyst SD-WAN Manager 18.3.7\\nCisco Cisco Catalyst SD-WAN Manager 19.2.0\\nCisco Cisco Catalyst SD-WAN Manager 18.3.8\\nCisco Cisco Catalyst SD-WAN Manager 19.0.0\\nCisco Cisco Catalyst SD-WAN Manager 19.1.0\\nCisco Cisco Catalyst SD-WAN Manager 18.4.302\\nCisco Cisco Catalyst SD-WAN Manager 18.4.303\\nCisco Cisco Catalyst SD-WAN Manager 19.2.097\\nCisco Cisco Catalyst SD-WAN Manager 19.2.098\\nCisco Cisco Catalyst SD-WAN Manager 17.2.10\\nCisco Cisco Catalyst SD-WAN Manager 18.3.6.1\\nCisco Cisco Catalyst SD-WAN Manager 19.0.1a\\nCisco Cisco Catalyst SD-WAN Manager 18.2.0\\nCisco Cisco Catalyst SD-WAN Manager 18.4.3\\nCisco Cisco Catalyst SD-WAN Manager 18.4.1\\nCisco Cisco Catalyst SD-WAN Manager 17.2.8\\nCisco Cisco Catalyst SD-WAN Manager 18.3.3.1\\nCisco Cisco Catalyst SD-WAN Manager 18.4.0\\nCisco Cisco Catalyst SD-WAN Manager 18.3.1\\nCisco Cisco Catalyst SD-WAN Manager 17.2.6\\nCisco Cisco Catalyst SD-WAN Manager 17.2.9\\nCisco Cisco Catalyst SD-WAN Manager 18.3.4\\nCisco Cisco Catalyst SD-WAN Manager 17.2.5\\nCisco Cisco Catalyst SD-WAN Manager 18.3.1.1\\nCisco Cisco Catalyst SD-WAN Manager 18.3.5\\nCisco Cisco Catalyst SD-WAN Manager 18.4.0.1\\nCisco Cisco Catalyst SD-WAN Manager 18.3.3\\nCisco Cisco Catalyst SD-WAN Manager 17.2.7\\nCisco Cisco Catalyst SD-WAN Manager 17.2.4\\nCisco Cisco Catalyst SD-WAN Manager 18.3.0\\nCisco Cisco Catalyst SD-WAN Manager 19.2.3\\nCisco Cisco Catalyst SD-WAN Manager 18.4.501_ES\\nCisco Cisco Catalyst SD-WAN Manager 20.3.1\\nCisco Cisco Catalyst SD-WAN Manager 20.1.2\\nCisco Cisco Catalyst SD-WAN Manager 19.2.929\\nCisco Cisco Catalyst SD-WAN Manager 19.2.31\\nCisco Cisco Catalyst SD-WAN Manager 20.3.2\\nCisco Cisco Catalyst SD-WAN Manager 19.2.32\\nCisco Cisco Catalyst SD-WAN Manager 20.3.2_925\\nCisco Cisco Catalyst SD-WAN Manager 20.3.2.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.2.1_927\\nCisco Cisco Catalyst SD-WAN Manager 18.4.6\\nCisco Cisco Catalyst SD-WAN Manager 20.1.2_937\\nCisco Cisco Catalyst SD-WAN Manager 20.4.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.2_928\\nCisco Cisco Catalyst SD-WAN Manager 20.3.2_929\\nCisco Cisco Catalyst SD-WAN Manager 20.4.1.0.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.2.1_930\\nCisco Cisco Catalyst SD-WAN Manager 19.2.4\\nCisco Cisco Catalyst SD-WAN Manager 20.5.0.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.4.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3\\nCisco Cisco Catalyst SD-WAN Manager 19.2.4.0.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.2_937\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.1\\nCisco Cisco Catalyst SD-WAN Manager 20.5.1\\nCisco Cisco Catalyst SD-WAN Manager 20.1.3\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.0.4\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.1.2\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.4.1.2\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.0.2\\nCisco Cisco Catalyst SD-WAN Manager 20.4.1.1.5\\nCisco Cisco Catalyst SD-WAN Manager 20.4.1.0.01\\nCisco Cisco Catalyst SD-WAN Manager 20.4.1.0.02\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.1.7\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.1.5\\nCisco Cisco Catalyst SD-WAN Manager 20.5.1.0.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.1.10\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.0.8\\nCisco Cisco Catalyst SD-WAN Manager 20.4.2\\nCisco Cisco Catalyst SD-WAN Manager 20.4.2.0.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.0.14\\nCisco Cisco Catalyst SD-WAN Manager 19.2.4.0.8\\nCisco Cisco Catalyst SD-WAN Manager 19.2.4.0.9\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.0.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.2.0.5\\nCisco Cisco Catalyst SD-WAN Manager 20.6.1\\nCisco Cisco Catalyst SD-WAN Manager 20.5.1.0.2\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.0.17\\nCisco Cisco Catalyst SD-WAN Manager 20.6.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.6.0.18.3\\nCisco Cisco Catalyst SD-WAN Manager 20.3.2.0.6\\nCisco Cisco Catalyst SD-WAN Manager 20.6.0.18.4\\nCisco Cisco Catalyst SD-WAN Manager 20.4.2.0.2\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.0.16\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.0.5\\nCisco Cisco Catalyst SD-WAN Manager 20.6.1.0.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.0.6\\nCisco Cisco Catalyst SD-WAN Manager 20.6.2\\nCisco Cisco Catalyst SD-WAN Manager 20.7.1EFT2\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.0.9\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.0.11\\nCisco Cisco Catalyst SD-WAN Manager 20.4.2.0.4\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.0.18\\nCisco Cisco Catalyst SD-WAN Manager 20.7.1\\nCisco Cisco Catalyst SD-WAN Manager 20.6.2.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.1\\nCisco Cisco Catalyst SD-WAN Manager 20.5.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.4.2.1\\nCisco Cisco Catalyst SD-WAN Manager 20.4.2.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.813\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.0.19\\nCisco Cisco Catalyst SD-WAN Manager 20.4.2.2.1\\nCisco Cisco Catalyst SD-WAN Manager 20.5.1.2\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.2\\nCisco Cisco Catalyst SD-WAN Manager 20.3.814\\nCisco Cisco Catalyst SD-WAN Manager 20.4.2.2\\nCisco Cisco Catalyst SD-WAN Manager 20.6.2.2\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.2.1\\nCisco Cisco Catalyst SD-WAN Manager 20.7.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.1.2\\nCisco Cisco Catalyst SD-WAN Manager 20.6.2.2.2\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.0.20\\nCisco Cisco Catalyst SD-WAN Manager 20.6.2.2.3\\nCisco Cisco Catalyst SD-WAN Manager 20.4.2.2.2\\nCisco Cisco Catalyst SD-WAN Manager 20.3.5\\nCisco Cisco Catalyst SD-WAN Manager 20.6.2.0.4\\nCisco Cisco Catalyst SD-WAN Manager 20.4.2.2.3\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.0.24\\nCisco Cisco Catalyst SD-WAN Manager 20.6.2.2.7\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.2.2\\nCisco Cisco Catalyst SD-WAN Manager 20.4.2.2.4\\nCisco Cisco Catalyst SD-WAN Manager 20.7.1.0.2\\nCisco Cisco Catalyst SD-WAN Manager 20.8.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.5.0.8\\nCisco Cisco Catalyst SD-WAN Manager 20.3.5.0.9\\nCisco Cisco Catalyst SD-WAN Manager 20.4.2.2.8\\nCisco Cisco Catalyst SD-WAN Manager 20.3.5.0.7\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.7\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.5\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.10\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.2\\nCisco Cisco Catalyst SD-WAN Manager 20.7.2\\nCisco Cisco Catalyst SD-WAN Manager 20.9.1EFT2\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.11\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.1\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.14\\nCisco Cisco Catalyst SD-WAN Manager 20.6.4\\nCisco Cisco Catalyst SD-WAN Manager 20.9.1\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.19\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.18\\nCisco Cisco Catalyst SD-WAN Manager 20.3.6\\nCisco Cisco Catalyst SD-WAN Manager 20.9.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.23\\nCisco Cisco Catalyst SD-WAN Manager 20.6.4.0.4\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.25\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.27\\nCisco Cisco Catalyst SD-WAN Manager 20.9.2\\nCisco Cisco Catalyst SD-WAN Manager 20.9.2.1\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.29\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.31\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.32\\nCisco Cisco Catalyst SD-WAN Manager 20.10.1\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.33\\nCisco Cisco Catalyst SD-WAN Manager 20.9.2.0.01\\nCisco Cisco Catalyst SD-WAN Manager 20.9.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.10.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.2_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.3.7\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.1\\nCisco Cisco Catalyst SD-WAN Manager 20.11.1\\nCisco Cisco Catalyst SD-WAN Manager 20.11.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3_LI_ Images\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.2\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.1.2\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.3\\nCisco Cisco Catalyst SD-WAN Manager 20.4.2.3\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.2\\nCisco Cisco Catalyst SD-WAN Manager 20.6.4.1\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.38\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.39\\nCisco Cisco Catalyst SD-WAN Manager 20.3.5.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.3\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.3.2\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.2\\nCisco Cisco Catalyst SD-WAN Manager 20.3.7.1\\nCisco Cisco Catalyst SD-WAN Manager 20.10.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.2.1\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.0.25\\nCisco Cisco Catalyst SD-WAN Manager 20.6.2.2.4\\nCisco Cisco Catalyst SD-WAN Manager 20.6.1.2\\nCisco Cisco Catalyst SD-WAN Manager 20.11.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.5\\nCisco Cisco Catalyst SD-WAN Manager 20.3.4.0.26\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.1.3\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.40\\nCisco Cisco Catalyst SD-WAN Manager 20.1.3.1\\nCisco Cisco Catalyst SD-WAN Manager 20.9.2.2\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.2.3\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.1.4\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.3\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.41\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.7\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.1.5\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.4\\nCisco Cisco Catalyst SD-WAN Manager 20.6.4.0.19\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.1.6\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.8\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.3\\nCisco Cisco Catalyst SD-WAN Manager 20.3.7.2\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.4\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.1.7\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.12\\nCisco Cisco Catalyst SD-WAN Manager 20.6.4.2\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.5\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.2\\nCisco Cisco Catalyst SD-WAN Manager 20.11.1.2\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.4\\nCisco Cisco Catalyst SD-WAN Manager 20.10.1.2\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.1.9\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.16\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.45\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.1.10\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.17\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.2.4\\nCisco Cisco Catalyst SD-WAN Manager 20.6.4.0.21\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.18\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.46\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.47\\nCisco Cisco Catalyst SD-WAN Manager 20.9.2.3\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.2_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.21\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.20\\nCisco Cisco Catalyst SD-WAN Manager 20.9.4_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.4\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.1.11\\nCisco Cisco Catalyst SD-WAN Manager 20.12.1\\nCisco Cisco Catalyst SD-WAN Manager 20.12.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.1.13\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.23\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.2.8\\nCisco Cisco Catalyst SD-WAN Manager 20.9.4.1\\nCisco Cisco Catalyst SD-WAN Manager 20.9.4.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.25\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.24\\nCisco Cisco Catalyst SD-WAN Manager 20.6.5.1.14\\nCisco Cisco Catalyst SD-WAN Manager 20.3.8\\nCisco Cisco Catalyst SD-WAN Manager 20.6.6\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.26\\nCisco Cisco Catalyst SD-WAN Manager 20.6.3.0.51\\nCisco Cisco Catalyst SD-WAN Manager 20.9.3.0.29\\nCisco Cisco Catalyst SD-WAN Manager 20.12.2\\nCisco Cisco Catalyst SD-WAN Manager 20.12.2_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.6.6.0.1\\nCisco Cisco Catalyst SD-WAN Manager 20.13.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.4.0.4\\nCisco Cisco Catalyst SD-WAN Manager 20.13.1\\nCisco Cisco Catalyst SD-WAN Manager 20.9.4.1.1\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.3_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.3\\nCisco Cisco Catalyst SD-WAN Manager 20.9.4.1.3\\nCisco Cisco Catalyst SD-WAN Manager 20.6.7\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5.1\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.4.1.6\\nCisco Cisco Catalyst SD-WAN Manager 20.14.1\\nCisco Cisco Catalyst SD-WAN Manager 20.14.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5.2\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5.2.1\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5.2_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.3.1\\nCisco Cisco Catalyst SD-WAN Manager 20.12.4\\nCisco Cisco Catalyst SD-WAN Manager 20.15.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.15.1\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5.1.4\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5.2.7\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5.2.13\\nCisco Cisco Catalyst SD-WAN Manager 20.9.6\\nCisco Cisco Catalyst SD-WAN Manager 20.9.6_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5.2.14\\nCisco Cisco Catalyst SD-WAN Manager 20.6.8\\nCisco Cisco Catalyst SD-WAN Manager 20.12.4.0.03\\nCisco Cisco Catalyst SD-WAN Manager 20.16.1\\nCisco Cisco Catalyst SD-WAN Manager 20.16.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.4_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5.2.16\\nCisco Cisco Catalyst SD-WAN Manager 20.12.4.0.4\\nCisco Cisco Catalyst SD-WAN Manager 20.12.401\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5.3\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5.3_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.4.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.4.1\\nCisco Cisco Catalyst SD-WAN Manager 20.9.5.2.21\\nCisco Cisco Catalyst SD-WAN Manager 20.9.6.0.3\\nCisco Cisco Catalyst SD-WAN Manager 20.12.4.0.6\\nCisco Cisco Catalyst SD-WAN Manager 20.15.2_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.15.2\\nCisco Cisco Catalyst SD-WAN Manager 20.12.4_Monthly_ES5\\nCisco Cisco Catalyst SD-WAN Manager 20.12.5\\nCisco Cisco Catalyst SD-WAN Manager 20.12.5_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.7_LI _Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.7\\nCisco Cisco Catalyst SD-WAN Manager 20.15.3\\nCisco Cisco Catalyst SD-WAN Manager 20.15.3_ LI _Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.501\\nCisco Cisco Catalyst SD-WAN Manager 20.12.5.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.5.1\\nCisco Cisco Catalyst SD-WAN Manager 20.12.5.2_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.5.2\\nCisco Cisco Catalyst SD-WAN Manager 20.15.3.1\\nCisco Cisco Catalyst SD-WAN Manager 20.15.4_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.15.4\\nCisco Cisco Catalyst SD-WAN Manager 20.9.7.1_LI _Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.7.1\\nCisco Cisco Catalyst SD-WAN Manager 20.18.1\\nCisco Cisco Catalyst SD-WAN Manager 20.18.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.6_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.6\\nCisco Cisco Catalyst SD-WAN Manager 20.12.5.1.01\\nCisco Cisco Catalyst SD-WAN Manager 26.0.1\\nCisco Cisco Catalyst SD-WAN Manager 20.9.8\\nCisco Cisco Catalyst SD-WAN Manager 20.9.8_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.18.2\\nCisco Cisco Catalyst SD-WAN Manager 20.15.4.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.15.4.1\\nCisco Cisco Catalyst SD-WAN Manager 20.18.2_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 26.1.1\\nCisco Cisco Catalyst SD-WAN Manager 26.1.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.18.2.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.18.2.1\\nCisco Cisco Catalyst SD-WAN Manager 20.15.4.2_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.15.4.2\\nCisco Cisco Catalyst SD-WAN Manager 20.12.6.1\\nCisco Cisco Catalyst SD-WAN Manager 20.12.6.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.5.3\\nCisco Cisco Catalyst SD-WAN Manager 20.12.5.3_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.8.2_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.8.2\\nCisco Cisco Catalyst SD-WAN Manager 20.18.3\\nCisco Cisco Catalyst SD-WAN Manager 20.18.3_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.15.5\\nCisco Cisco Catalyst SD-WAN Manager 20.15.5_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.7\\nCisco Cisco Catalyst SD-WAN Manager 20.12.7_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.9.9\\nCisco Cisco Catalyst SD-WAN Manager 20.9.9_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.18.2.2\\nCisco Cisco Catalyst SD-WAN Manager 20.18.2.2_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.5.4\\nCisco Cisco Catalyst SD-WAN Manager 20.12.5.4_LI_ Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.7.1_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.6.2_LI_Images\\nCisco Cisco Catalyst SD-WAN Manager 20.12.7.1&#8243;,&#8221;sourceHref&#8221;:&#8221;&#8221;,&#8221;cvss&#8221;:{&#8220;score&#8221;:8.6,&#8221;severity&#8221;:&#8221;HIGH&#8221;,&#8221;vector&#8221;:&#8221;CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:C\/C:H\/I:N\/A:N&#8221;,&#8221;version&#8221;:&#8221;3.1&#8243;},&#8221;cvss2&#8243;:{},&#8221;cvss3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;,&#8221;cvssV3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;}},&#8221;href&#8221;:&#8221;&#8221;,&#8221;category_name&#8221;:&#8221;CVE&#8221;,&#8221;post_link&#8221;:&#8221;&#8221;,&#8221;product&#8221;:&#8221;Cisco Catalyst SD-WAN Manager&#8221;,&#8221;version&#8221;:&#8221;20.1.12&#8243;,&#8221;vendor&#8221;:&#8221;Cisco&#8221;,&#8221;ai_description&#8221;:&#8221;AI processing failed &#8211; no valid JSON found&#8221;,&#8221;ai_severity&#8221;:&#8221;&#8221;,&#8221;ai_vendor&#8221;:&#8221;&#8221;,&#8221;ai_product&#8221;:&#8221;&#8221;,&#8221;ai_version&#8221;:&#8221;&#8221;,&#8221;ai_score&#8221;:0}<\/p>\n","protected":false},"excerpt":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;&#8221;,&#8221;description&#8221;:&#8221;A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, remote attacker to read arbitrary files that&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2],"tags":[6,8,81,12,15,13,7,11,5],"class_list":["post-54516","post","type-post","status-publish","format-standard","hentry","category-category_cve","tag-cve","tag-cvss","tag-cvss-86","tag-exploit","tag-high","tag-news","tag-security","tag-tapic","tag-vulnerability"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability_CVE-2026-20224 - zero redgem<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/zero.redgem.net\/?p=54516\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability_CVE-2026-20224 - zero redgem\" \/>\n<meta property=\"og:description\" content=\"{&#8220;lastseen&#8221;:&#8221;&#8221;,&#8221;description&#8221;:&#8221;A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, remote attacker to read arbitrary files that...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/zero.redgem.net\/?p=54516\" \/>\n<meta property=\"og:site_name\" content=\"zero redgem\" \/>\n<meta property=\"article:published_time\" content=\"2026-05-14T12:03:01+00:00\" \/>\n<meta name=\"author\" content=\"invoker\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"invoker\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"11 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=54516#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=54516\"},\"author\":{\"name\":\"invoker\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\"},\"headline\":\"Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability_CVE-2026-20224\",\"datePublished\":\"2026-05-14T12:03:01+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=54516\"},\"wordCount\":2168,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"keywords\":[\"CVE\",\"CVSS\",\"CVSS-8.6\",\"exploit\",\"HIGH\",\"news\",\"Security\",\"tapic\",\"Vulnerability\"],\"articleSection\":[\"category_cve\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=54516#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=54516\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?p=54516\",\"name\":\"Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability_CVE-2026-20224 - zero redgem\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\"},\"datePublished\":\"2026-05-14T12:03:01+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=54516#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=54516\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=54516#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/zero.redgem.net\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability_CVE-2026-20224\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"name\":\"zero redgem\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/zero.redgem.net\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\",\"name\":\"zero redgem\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"\",\"contentUrl\":\"\",\"width\":191,\"height\":188,\"caption\":\"zero redgem\"},\"image\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\",\"name\":\"invoker\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"caption\":\"invoker\"},\"sameAs\":[\"https:\\\/\\\/zero.redgem.net\"],\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?author=1\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability_CVE-2026-20224 - zero redgem","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/zero.redgem.net\/?p=54516","og_locale":"en_US","og_type":"article","og_title":"Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability_CVE-2026-20224 - zero redgem","og_description":"{&#8220;lastseen&#8221;:&#8221;&#8221;,&#8221;description&#8221;:&#8221;A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, remote attacker to read arbitrary files that...","og_url":"https:\/\/zero.redgem.net\/?p=54516","og_site_name":"zero redgem","article_published_time":"2026-05-14T12:03:01+00:00","author":"invoker","twitter_card":"summary_large_image","twitter_misc":{"Written by":"invoker","Est. reading time":"11 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/zero.redgem.net\/?p=54516#article","isPartOf":{"@id":"https:\/\/zero.redgem.net\/?p=54516"},"author":{"name":"invoker","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca"},"headline":"Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability_CVE-2026-20224","datePublished":"2026-05-14T12:03:01+00:00","mainEntityOfPage":{"@id":"https:\/\/zero.redgem.net\/?p=54516"},"wordCount":2168,"commentCount":0,"publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"keywords":["CVE","CVSS","CVSS-8.6","exploit","HIGH","news","Security","tapic","Vulnerability"],"articleSection":["category_cve"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/zero.redgem.net\/?p=54516#respond"]}]},{"@type":"WebPage","@id":"https:\/\/zero.redgem.net\/?p=54516","url":"https:\/\/zero.redgem.net\/?p=54516","name":"Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability_CVE-2026-20224 - zero redgem","isPartOf":{"@id":"https:\/\/zero.redgem.net\/#website"},"datePublished":"2026-05-14T12:03:01+00:00","breadcrumb":{"@id":"https:\/\/zero.redgem.net\/?p=54516#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/zero.redgem.net\/?p=54516"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/zero.redgem.net\/?p=54516#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/zero.redgem.net\/"},{"@type":"ListItem","position":2,"name":"Cisco Catalyst SD-WAN Manager XML External Entity Injection Vulnerability_CVE-2026-20224"}]},{"@type":"WebSite","@id":"https:\/\/zero.redgem.net\/#website","url":"https:\/\/zero.redgem.net\/","name":"zero redgem","description":"","publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/zero.redgem.net\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/zero.redgem.net\/#organization","name":"zero redgem","url":"https:\/\/zero.redgem.net\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/","url":"","contentUrl":"","width":191,"height":188,"caption":"zero redgem"},"image":{"@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca","name":"invoker","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","caption":"invoker"},"sameAs":["https:\/\/zero.redgem.net"],"url":"https:\/\/zero.redgem.net\/?author=1"}]}},"_links":{"self":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/54516","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=54516"}],"version-history":[{"count":0,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/54516\/revisions"}],"wp:attachment":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=54516"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=54516"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=54516"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}