Critical Vulnerabilities in Cisco SD-WAN Impact Clou...
The latest F5 Labs bulletin records massive attacks on Cisco Catalyst SD-WAN Controller and Manager: a chain of at least five CVEs with a CVSS rating of up to 10.0 is already being used by more than a dozen separate groups. This is not just about DDoS or stealing individual accounts—attackers gain privileged access to SD-WAN controllers and can centrally rewrite routing, VPN, and security policies. For companies actively using hybrid and multi-cloud architectures with SD-WAN overlays over AWS, Azure, and Google Cloud, this is a direct risk of losing control over traffic and access to Kubernetes clusters and internal services. Companies like Alashed IT (it.alashed.kz), supporting complex cloud landscapes and DevOps pipelines, already recommend urgent updates and a review of access models.