Cisco Secure Firewall Management Center Software Vulnerabilities Could Allow for Authentication Bypass
- •Cisco Secure FMC Software versions prior to 7.0
- •Cisco Secure FMC Software versions prior to 7.2
- •Cisco Secure FMC Software versions prior to 7.4
- •Cisco Secure FMC Software versions prior to 7.6
- •Cisco Secure FMC Software versions prior to 7.7
- •Cisco Secure FMC Software versions prior to 10.0
Executive Summary
MS-ISAC Advisory 2026-075 (issued 7/30/2026): multiple vulnerabilities in Cisco Secure Firewall Management Center (FMC) Software, the most severe of which could allow authentication bypass. CVE-2026-20079 could allow an unauthenticated, remote attacker to execute script files and obtain root access to the underlying operating system; CVE-2026-20316 could allow login using a low-privileged account to access sensitive data. Cisco PSIRT is aware of active exploitation of CVE-2026-20316, and CISA added it to the Known Exploited Vulnerability Catalog.
Municipal Impact
MS-ISAC rates the risk as High for large and medium government entities and Medium for small government entities. Attack surface is reduced if the FMC management interface is not publicly accessible.
SMB Impact
MS-ISAC rates the risk as High for large and medium business entities, Medium for small business entities, and Low for home users.
Recommended Actions
- Apply appropriate updates provided by Cisco to vulnerable systems immediately after appropriate testing.
- Ensure the FMC management interface does not have public internet access.
- Follow CIS Safeguards for vulnerability management, automated vulnerability scanning, and remediation.
Grey Matter Analysis
References
- https://learn.cisecurity.org/e/799323/onprem-fmc-authbypass-5JPp45V2/4w1kxg/2735409406/h/dCttfFQq65IBUlSuHe69o8DZahHdbOUUFnMtijVK9W8
- https://learn.cisecurity.org/e/799323/sco-sa-fmc-static-cred-BET3Cjh/4w1kxc/2735409406/h/dCttfFQq65IBUlSuHe69o8DZahHdbOUUFnMtijVK9W8
- https://learn.cisecurity.org/e/799323/vename-cgi-name-CVE-2026-20079/4w1kxk/2735409406/h/dCttfFQq65IBUlSuHe69o8DZahHdbOUUFnMtijVK9W8
- https://learn.cisecurity.org/e/799323/vename-cgi-name-CVE-2026-20316/4w1kxn/2735409406/h/dCttfFQq65IBUlSuHe69o8DZahHdbOUUFnMtijVK9W8
- https://learn.cisecurity.org/e/799323/resources--type-advisory/4w1kwk/2735409406/h/dCttfFQq65IBUlSuHe69o8DZahHdbOUUFnMtijVK9W8
Tags
Related Intelligence
Need help with this advisory?
Contact Grey Matter to assess your exposure and prioritize remediation.
Contact Grey Matter