chiprook
← Security
SecurityOctober 4, 2026, 16:20

Cisco FMC CVE-2026-20079: CVSS 10.0 auth bypass exploited in the wild

Cisco confirmed exploitation of CVE-2026-20079 in Secure Firewall Management Center: an authentication bypass in the management interface rated CVSS 10.0 allows root code execution. CISA added it to the KEV catalog on September 9, giving federal agencies until September 12 to patch. Talos linked the activity to three clusters, including Sandworm and Qilin ransomware delivery.

Cisco FMC CVE-2026-20079: CVSS 10.0 auth bypass exploited in the wild
#Cisco#CISA#Talos
Read next
Security

Cisco Talos: Two FMC Flaws Exploited by Three Threat Clusters

Security

Critical GitLab flaw CVSS 10.0 exploited in the wild

Security

Cisco warns of active exploitation of CVSS 9.8 SD-WAN Manager auth bypass

Security

Cisco Talos finds CLOSEDQUORUM malware that picks its next move via four LLMs