← nejvýznamnější zprávy · všechny zprávy

SPOJENO AI KEV ✓ (3 z 3) · ransomware EPSS 0.76 (nejvyšší)

Cisco FMC flaws exploited by ransomware gang, state-sponsored hackers

Cisco Talos says two recently patched Secure Firewall Management Center (FMC) vulnerabilities have been exploited by three separate threat clusters linked to ransomware and state-sponsored attacks. [...]

Číst originál na BleepingComputer →

12 zpráv z 7 zdrojů · první 29. 7. 02:00 · poslední 11. 9. 16:54 CZ · EN/orig

Cisco veřejná správa NL US CA

tg: zneužíváno tg: zranitelnost tg: rozbor tg: názor tg: přehled tp: malware tp: ransomware tp: identita tp: špionáž

CVE v události 3

CVEhodnoceníKEVEPSS
CVE-2026-20079 10.0 3.1 · cisco KEV ✓ 0.76
CVE-2026-20131 10.0 3.1 · cisco KEV ✓ 0.33
CVE-2026-20316 5.3 3.1 · cisco KEV ✓ 0.11

Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE. Advisory v textu uvádí CVSS 10.0.

Jak se o tom psalo 12

  1. · NCSC-NL NL

    NCSC-2026-0271 [1.01] [M/H] Kwetsbaarheid verholpen in Cisco Secure Firewall Management Center

    Cisco heeft een kwetsbaarheid verholpen in Cisco Secure Firewall Management Center. De kwetsbaarheid bevindt zich in de webinterface van Cisco Secure Firewall Management Center en betreft een hard-coded, statisch wachtwoord voor een laaggeprivilegieerd account. Hierdoor kunnen niet-geauthenticeerde externe aanvallers toegang verkrijgen zonder inloggegevens. Deze toegang kan leiden tot het blootstellen van gevoelige data die door het systeem wordt opgeslagen of beheerd. In combinatie met andere…

  2. · NCSC-NL NL

    NCSC-2026-0076 [1.02] [H/H] Kwetsbaarheden verholpen in Cisco Secure Firewall Management Center

    Cisco heeft kwetsbaarheden verholpen in Cisco Secure Firewall Management Center. De kwetsbaarheid met kenmerk CVE-2026-20079 bevindt zich in de webinterface van Cisco Secure Firewall Management Center. Een ongeauthenticeerde externe kwaadwillende kan de authenticatiecontroles omzeilen door een onjuist systeemproces dat bij het opstarten is aangemaakt te misbruiken. De kwaadwillende kan deze kwetsbaarheid misbruiken door speciaal geprepareerde HTTP-verzoeken naar een getroffen apparaat te sturen…

  3. · Cisco Talos US

    We've got one word for it, and it's usually the wrong one

    Welcome to this week’s edition of the Threat Source newsletter. Ask anybody in this industry what the work does to the health of the people who do it and you get one word back: burnout. It's a fine word, in and of itself. It’s easy to reach for, understandable to everyone… and it's the wrong one, most of the time. So, story time. Last year I gave an interview with the amazing Hazel Burton about VPNFilter, and my run-in with burnout. I was a manager during that time, and it took a toll on me and…

  4. · BleepingComputer US nadpis události

    Cisco FMC flaws exploited by ransomware gang, state-sponsored hackers

    Cisco Talos says two recently patched Secure Firewall Management Center (FMC) vulnerabilities have been exploited by three separate threat clusters linked to ransomware and state-sponsored attacks. [...]

  5. · BleepingComputer US

    Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks

    Cisco has confirmed that a maximum-severity authentication bypass vulnerability tracked as CVE-2026-20079 in its Secure Firewall Management Center (FMC) software is being actively exploited in attacks. [...]

  6. · Cyber Centre Kanada CA

    Cisco security advisory (AV26-197) – Update 3

    Serial number: AV26-197Date: March 5, 2026Updated: September 9, 2026 On March 4, 2026, Cisco published security advisories to address vulnerabilities in the following products. Included were critical updates for the following: Cisco Security Cloud Control (SCC) Firewall Management – all versions Cisco Secure Firewall Management Center (FMC) – all versions Cisco Secure Firewall Adaptive Security Appliance (ASA) – versions prior to 9.20.4.14 Cisco Secure Firewall Threat Defense (FTD) – all…

  7. · Cisco Talos US

    Active exploitation of Cisco Secure Firewall Management Center vulnerabilities

    Cisco Talos is actively tracking the exploitation of two vulnerabilities in Cisco’s Secure Firewall Management Center (FMC) Software. First, CVE-2026-20079 is an authentication bypass vulnerability in unpatched instances of Cisco’s Secure FMC Software, which allows an unauthenticated, remote attacker to bypass authentications and execute scripts on impacted devices to obtain root access to the underlying operating system. Second, CVE-2026-20316 is a vulnerability that allows a remote attacker…

  8. · CISA KEV US

    Cisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel Vulnerability (CVE-2026-20079)

    CISA added CVE-2026-20079 to the Known Exploited Vulnerabilities catalog. Affected product: Cisco Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management. Remediation due date: 2026-09-12.

  9. · Cisco PSIRT US

    Cisco Secure Firewall Management Center Software Static Credential Vulnerability

    A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to log in to an affected device using a low-privileged account to access sensitive data within the impacted systems. This vulnerability is due to the presence of static user credentials for a low-privileged account. An attacker could exploit this vulnerability by using the account to log in to an affected system. A successful exploit could allow the…

  10. · Zero Day Initiative US

    ZDI-26-533: Cisco Secure Firewall Management Center login.cgi Authentication Bypass Vulnerability

    This vulnerability allows remote attackers to bypass authentication on affected installations of Cisco Secure Firewall Management Center. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 9.8. The following CVEs are assigned: CVE-2026-20316.

  11. · Cisco PSIRT US

    Cisco Secure Firewall Management Center Software Authentication Bypass Vulnerability

    A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an affected device to obtain root access to the underlying operating system. This vulnerability is due to an improper system process that is created at boot time. An attacker could exploit this vulnerability by sending crafted HTTP requests to an affected device. A successful exploit could allow the…

  12. · CISA KEV US

    Cisco Secure Firewall Management Center Use of Hard-coded Password Vulnerability (CVE-2026-20316)

    CISA added CVE-2026-20316 to the Known Exploited Vulnerabilities catalog. Affected product: Cisco Secure Firewall Management Center (FMC). Remediation due date: 2026-08-01.