securityaffairs.com 7/30/2026, 10:00:58 AM · external

CISA warns attackers exploit Cisco firewall flaw CVE-2026-20316

CISA warns attackers exploit Cisco firewall flaw CVE-2026-20316
Developing story vulnerability 4 articles tracked
Cisco FMC hardcoded password flaw (CVE-2026-20316) exploited in the wild
CyberSIXT Evidence Panel
Primary Source cisa.gov
CISA KEV Listed in KEV
Patch Patch Available

THE U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a vulnerability in Cisco Secure Firewall Management Center (FMC) Software, identified as CVE-2026-20316 with a CVSS score of 5.3, to its Known Exploited Vulnerabilities catalog. This flaw allows unauthenticated remote attackers to access sensitive information by exploiting hardcoded credentials for a low-privileged user account.

Cisco has released hotfixes for multiple software versions and has confirmed active exploitation of this vulnerability. CISA emphasizes the urgency for federal agencies and organizations to address this flaw to protect their networks.

View Primary Source Via securityaffairs.com

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline