CVE-2026-20079
A flaw in Cisco Secure Firewall Management Center’s web interface lets an unauthenticated attacker bypass login and run scripts with root privileges. The bug stems from a system process created at boot that can be triggered by crafted HTTP requests. If exploited, the attacker gains full control of the device’s operating system.
No official fix yet. If none appears within 45 days of first tracking, this entry is removed automatically.
Who is affected
Cisco Secure Firewall Management Center (FMC) Software – all versions. Network administrators and security teams managing Cisco firewalls are the typical users.
Real-world impact
An attacker could log in without credentials, run arbitrary commands, and take over the firewall, potentially compromising the entire network.
Why this severity
The CVSS score of 10 reflects that the flaw requires no authentication, has no user interaction, and gives the attacker full control of the system, making it a critical vulnerability.
What to do about it
No official fix or mitigation is documented in the sources yet. Monitor the vendor advisory and apply the patch as soon as it is released.
No fix documented in sources
Timeline
- Mar 4, 2026 · Mar 4, 2026PublishedDisclosed and added to the National Vulnerability Database.
- Jul 29, 2026 · 7d agoAdvisory updatedThe NVD record was last revised.