logo

Root Access for All: Critical Auth Bypass Hits Cisco Firewall Management Center

ID: 552e3002-c82c-5301-9e2e-5f327250751f

STIX ID: report--552e3002-c82c-5301-9e2e-5f327250751f

Feed Name: securityonline.info

Threat Score
90/100

Date Published: 2026-03-05

Date Updated: 2026-04-23

Author: Ddos

...
...

A critical vulnerability (CVE-2026-20079, CVSS 10.0) was disclosed in the web-based management interface of Cisco Secure Firewall Management Center (on‑prem virtual and physical appliances) that allows remote unauthenticated attackers to obtain root access by sending crafted HTTP requests; Cisco has released patches (no workaround) and recommends using the Software Checker and restricting management access while updating.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.