CVE Tools
Back to feed
Exploited in the wild Cisco Secure Firewall Management Center (FMC) Software network-edge Cisco zero-day

Cisco Secure FMC Zero-Day Exploited in the Wild

SecurityWeek·By Eduard Kovacs··1 min read
CVE Tools coverage

Cisco has issued patches for a zero-day vulnerability in its Secure Firewall Management Center (FMC) software that is currently being exploited in real-world attacks. The flaw, identified as CVE-2026-20316, involves hardcoded default credentials for a low-privilege user account, enabling attackers to gain unauthorized access and retrieve sensitive data. Cisco labeled the issue 'high severity' and warned that it could be combined with other vulnerabilities to escalate privileges. Organizations are urged to apply updates immediately to mitigate risks.