top of page
perceptive_background_267k.jpg

Cisco Secure Firewall Management Center (FMC) formerly known as Firepower Management Center contains a use of hard-coded password vulnerability that could allow…

Published:

29 July 2026 at 00:00:00

Alert date:

29 July 2026 at 20:03:55

Source:

cisa.gov

Click to open the original link from this advisory

Network Infrastructure, Security Tools, Identity & Access, Critical Infrastructure

CVE-2026-20316 affects Cisco Secure Firewall Management Center (FMC), formerly known as Firepower Management Center. The vulnerability involves the use of a hard-coded password that could allow an unauthenticated, remote attacker to log in to affected devices using a low-privileged account. Successful exploitation could grant access to sensitive data within the impacted systems. The flaw does not require authentication, making it particularly dangerous for exposed deployments. CISA has flagged this vulnerability under BOD 26-04, which prioritizes security updates based on risk. Organizations using Cisco FMC are urged to apply patches immediately. The vulnerability is tracked in the NVD and covered by Cisco's own security advisory. Forensic triage requirements have also been outlined by CISA for affected organizations.

Technical details

Mitigation steps:

Affected products:

Cisco Secure Firewall Management Center
Cisco Firepower Management Center

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page