logo

Cisco warns of max severity Secure FMC flaws giving root access

ID: 2165f3db-bd58-5e14-a28f-dc13c1834fec

STIX ID: report--2165f3db-bd58-5e14-a28f-dc13c1834fec

Feed Name: Bleeping Computer

Threat Score
72/100

Date Published: 2026-03-04

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Cisco released security updates addressing two maximum-severity, remotely exploitable vulnerabilities in Secure Firewall Management Center (FMC): an authentication bypass (CVE-2026-20079) that can yield root access and a remote code execution (CVE-2026-20131) that allows execution of arbitrary Java code as root; Cisco reports no evidence of active exploitation or public PoCs and also patched numerous other issues across its firewall and security products.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.