Cyberaro threat desk

Security Alerts: fast risk briefings for urgent vulnerabilities

A dedicated Cyberaro shelf for practical vulnerability alerts, patch priorities, exposure checks, and clear action steps for defenders.

Vulnerability watchPatch priority

Start here

Cisco ISE Guest Portals Flaw Allows Stored XSS With Admin Access

Cisco has disclosed stored cross-site scripting vulnerabilities in Identity Services Engine guest portals that could let an authenticated attacker with administrative credentials execute script in the management interface context. Updates are available, and Cisco says no workaround exists.

Eng. Hussein Ali Al-Assaad / Jul 17, 2026

Alert archive

All active security briefings

Cyberaro security alert cover for Cisco Catalyst SD-WAN Manager privilege escalation vulnerability CVE-2026-20245
Cisco SD-WAN Manager Privilege Escalation Alert

Cisco has disclosed a high-severity privilege escalation flaw in Cisco Catalyst SD-WAN Manager that could let an authenticated local attacker with netadmin privileges execute commands as root. Organizations should preserve logs, collect admin-tech files, upgrade to fixed software, and verify edge device configurations.

Eng. Hussein Ali Al-AssaadJun 08, 20263 min read