Cisco Secure Firewall Management Center RCE Vulnerability Disclosed
Article Content
- •Critical RCE vulnerability in Cisco FMC Software affecting external database access.
- •Attackers can execute arbitrary commands as root if they control a host in the access list.
- •Cisco has issued patches; no workarounds are available.
A critical vulnerability has been identified in the External Database Access feature of Cisco Secure Firewall Management Center (FMC) Software, allowing unauthenticated remote attackers to execute arbitrary commands as root. This vulnerability arises from insecure deserialization of a user-supplied Java byte stream from hosts in the external database access list. Attackers can exploit this by sending a crafted Java byte stream to a specific TCP port of the affected device. Successful exploitation could lead to full system compromise. Cisco has released software updates to address this issue, but no workarounds are available. The attack surface is reduced if the FMC management interface is not publicly accessible. This advisory is part of a broader set of advisories released on September 16, 2026.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical GitLab CVE-2026-85706 Exploited; Microsoft Issues Record 974 Patches A critical CVE-2026-85706 path-traversal vulnerability in GitLab (CVSS 10.0) was exploited in the wild just hours after its disclosure on September 12, 2026. Microsoft released its largest-ever patch batch, addressing 974 vulnerabilities, including several actively exploited Windows flaws. The GitLab flaw allows…