CISCO has issued a warning about a vulnerability in its Firewall Management Center (FMC), identified as CVE-2026-20316, which is currently under active attack. This vulnerability allows remote attackers to log in using hidden static credentials, exposing sensitive configuration and monitoring data. Key details include:
- **CVE ID:** CVE-2026-20316
- **CVSS Score:** 5.3 (Medium)
- **Affected versions:** 7.0.0, 7.0.1, 7.0.2, 7.2.0, among others
- **Impact:** Exploitation could lead to privilege escalation.
- **Status:** Actively exploited in the wild; added to CISA's Known Exploited Vulnerabilities catalog.
To mitigate this risk, Cisco advises immediate patching as there are no workarounds available. Users are encouraged to check for a hotfix applicable to their version.