chiprook
← Security
SecuritySeptember 29, 2026, 11:41

Cisco Talos: Two FMC Flaws Exploited by Three Threat Clusters

Cisco Talos disclosed on 9 September 2026 that two patched flaws in the web interface of Cisco Secure Firewall Management Center were being exploited in the wild by three separate threat clusters. CVE-2026-20079 carries a CVSS score of 10.0 and allows pre-authentication root access, while CVE-2026-20316 (5.3) is a static credential issue; chained, they give control over the managed firewall fleet.

Cisco Talos: Two FMC Flaws Exploited by Three Threat Clusters
#Cisco#Talos#CISA
Read next
Security

Cisco FMC authentication bypass CVE-2026-20079 has CVSS 10.0

Security

CISA adds Cisco ISE CVE-2026-76460 to exploited vulnerabilities list

Security

Cisco's two exploited flaws and CISA's patch clock

Security

Active Exploitation Triggers Emergency Patch for Cisco ISE Zero-Day