# Cisco patches multiple SD-WAN, IOS XE, UCS flaws

Published: 2026-08-06 · Severity: medium · Sectors: technology, telecommunications
Canonical: https://vorant.io/reports/730816c8-00f7-57ae-9067-cd4a1b0118ee/cisco-patches-multiple-sd-wan-ios-xe-ucs-flaws

> Cisco disclosed 15 vulnerabilities across Catalyst SD-WAN, IOS XE, NFVIS and UCS products enabling RCE, DoS, security bypass or data exposure; patches are available.

ANSSI (CERT-FR) relayed six Cisco security advisories published on 5 August 2026 covering multiple vulnerabilities across Catalyst SD-WAN, IOS XE, NFVIS, UCS Server and UCSE product lines. The flaws collectively allow remote attackers to execute arbitrary code, cause denial of service, bypass security policies, or access confidential data, depending on the specific CVE and affected product. Fifteen CVEs are referenced (CVE-2026-20124, -20200, -20263, -20267 through -20273, -20288, -20301, -20303, -20304, -20310, -20312, -20313), spanning issues in SD-WAN hardening, IOS XE hardening, SNMP handling, CIMC argument injection, XMCP, and IOS XE 'bing' components.

Affected versions span a wide range of Cisco Catalyst SD-WAN (20.9.x through 26.1.x), IOS XE (17.9.x through 26.1.x), NFVIS (4.12.x through 26.1.x), and UCS Server/UCSE firmware releases, indicating broad exposure across Cisco's enterprise networking and infrastructure portfolio. No evidence of active exploitation is mentioned in the advisory; this is a routine vendor patch disclosure requiring administrators to apply the fixed releases identified in Cisco's bulletins.

## Mentioned in this report

- Vulnerabilities: CVE-2026-20124, CVE-2026-20200, CVE-2026-20263, CVE-2026-20267, CVE-2026-20268, CVE-2026-20269, CVE-2026-20270, CVE-2026-20271, CVE-2026-20272, CVE-2026-20273, CVE-2026-20288, CVE-2026-20301, CVE-2026-20303, CVE-2026-20304, CVE-2026-20310, CVE-2026-20312, CVE-2026-20313

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0975

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/730816c8-00f7-57ae-9067-cd4a1b0118ee/cisco-patches-multiple-sd-wan-ios-xe-ucs-flaws.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
