Cisco FMC Static Credential Flaw Exploited in Zero-Day Attacks

Cisco FMC Static Credential Flaw Exploited in Zero-Day Attacks

First seen 30 Jul 2026, 08:20 UTC BleepingcomputerCybersecuritynewsHeise.De 86% similarity 72.0

Article Content

Browse articles
ThreatCluster

Cisco has issued a warning regarding a high-severity vulnerability in its Secure Firewall Management Center (FMC) Software, tracked as CVE-2026-20316. This flaw, caused by static credentials for a low-privilege account, allows unauthenticated remote attackers to gain unauthorized access to affected systems. Although the CVSS score is 5.3, Cisco rates it as High due to potential privilege escalation when combined with other vulnerabilities. The vulnerability affects multiple FMC versions but does not impact Cloud-Delivered FMC or other firewall software. Cisco became aware of the active exploitation in July 2026 but has not disclosed the attack's origins or targeted organizations. Administrators are advised to check log files for indicators of compromise and to apply hot fixes immediately. Additionally, Cisco updated an advisory for another critical vulnerability, CVE-2026-20079, which allows unauthenticated access and has a maximum CVSS score of 10.0.

Key Points: • CVE-2026-20316 is actively exploited, allowing unauthorized access to Cisco FMC systems. • Cisco rates the vulnerability as High despite a CVSS score of 5.3 due to potential privilege escalation. • Administrators must apply hot fixes immediately and monitor logs for signs of compromise.

ThreatCluster AI How this analysis works

Timeline

2026-03-04
CVE-2026-20079 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-29
CVE-2026-20316 published
Cisco disclosed a static credential vulnerability in FMC Software, enabling unauthorized access.
Bleepingcomputer
2026-07-29
CVE-2026-20316 added to CISA KEV
The vulnerability was recognized for active exploitation, prompting CISA to include it in their Known Exploited Vulnerabilities catalog.
Bleepingcomputer
2026-07-30
Cisco releases security updates
Cisco released hot fixes for affected FMC versions and urged immediate application to mitigate the vulnerability.
Cybersecuritynews

Community

Browse all →