All news & advisories
Actively exploited

CVE-2026-20316: Actively Exploited Vulnerability

CVE-2026-20316 CVSS 5.3 CISA KEV · actively exploited
Who it affects
See the summary below.
What to do
Patch immediately — prioritise internet-facing systems.

CVE-2026-20316 - Cisco Secure Firewall Management Center Static Credentials

Severity: MEDIUM (CVSS 5.3) | KEV Status: Actively Exploited

Affected Product:

  • Cisco Secure Firewall Management Center (FMC) Software

Vulnerability Details: Static user credentials exist for a low-privileged account in the FMC web interface, allowing unauthenticated remote attackers to log in and access sensitive data. Cisco has assigned a High Security Impact Rating due to potential for privilege escalation when chained with other FMC vulnerabilities.

Attack Prerequisites:

  • Management interface must be internet-accessible (risk reduced if not publicly exposed)
  • No authentication required for initial access

Remediation:

  1. Apply vendor patches from Cisco Security Advisory cisco-sa-fmc-static-cred-BET3Cjh
  2. If not already deployed, restrict FMC management interface access to trusted networks only
  3. Prioritize remediation given active exploitation

References:

Data as of July 30, 2026. Sources: nvd.nist.gov, sec.cloudapps.cisco.com, cisa.gov. Figures are pulled from public vendor and security data and refreshed automatically.
Back to all news & advisories