Web_Logo
Remote Support
Security Alert: Cisco Firewall Bug Under Active Attack
Home » Security Alerts  »  Security Alert: Cisco Firewall Bug Under Active Attack

Security Alert: Cisco Firewall Bug Under Active Attack

A security flaw in Cisco's Secure Firewall Management Center (FMC) software is being actively exploited by attackers, according to the US Cybersecurity and Infrastructure Security Agency (CISA). If your business runs Cisco firewall management infrastructure, this needs attention now.

  • What it is: A hard-coded password vulnerability (CVE-2026-20316) that lets an attacker log into affected systems using a low-privilege account, without needing valid credentials.
  • Who is affected: Businesses running Cisco Secure Firewall Management Center software on their network.
  • The risk: Once inside, an attacker can access sensitive configuration data and potentially use the foothold to move further into your network.
  • What to do: Confirm with your IT provider whether any of your firewall infrastructure uses Cisco FMC, and if so, apply the vendor patch immediately. CISA has added this vulnerability to its Known Exploited Vulnerabilities catalog, meaning exploitation is confirmed, not theoretical.

If you are unsure whether this affects your network, we recommend checking with your IT provider rather than assuming you are in the clear.