live markets
S&P 5007,489.72▲ 0.70%NASDAQ25,373.85▲ 1.00%DOW52,485.03▲ 0.53%GOLD4,107.00▼ 1.29%WTI CRUDE84.67▲ 1.29%BRENT90.12▲ 1.22%EUR/USD1.1527▼ 0.02%GBP/USD1.3482▲ 0.13%USD/JPY157.40▼ 1.38%NAT GAS2.747▼ 0.40%
pulseofnations.
Sun, Aug 2 2026 β€” 10:19 UTC telegram ↗ Join the wire

Cisco FMC Zero-Day Actively Exploited, CISA Warns

Cisco patched a high-severity zero-day in its Secure Firewall Management Center with static credentials that allowed unauthenticated attackers to access sensitive data from vulnerable devices.

Cisco has released security patches for an actively exploited zero-day vulnerability in its Secure Firewall Management Center (FMC) software, tracked as CVE-2026-20316, after confirming that attackers had already leveraged the flaw to gain unauthorized access to vulnerable devices.

The Cybersecurity and Infrastructure Security Agency (CISA) added the vulnerability to its Known Exploited Vulnerabilities (KEV) catalog on July 31, 2026, ordering federal civilian executive branch agencies to remediate the issue before August 1. The flaw arises from static credentials embedded in the FMC web interface, which allows unauthenticated remote login to affected devices through a low-privileged account.

Cisco explained in its advisory that the vulnerability affects Cisco Secure FMC software and provides attackers with access to data within impacted systems. The FMC is a centralized management platform used to configure and monitor multiple Cisco Secure Firewall devices across enterprise networks, meaning a compromise could potentially expose an organization’s entire firewall infrastructure.

The vulnerability carries a high-severity rating and is particularly dangerous because it requires no authentication to exploit. Attackers can simply use the embedded static credentials to log into the FMC web interface, gaining access to sensitive configuration data and potentially the ability to alter firewall rules across an organization’s network.

Cisco urged all customers to apply the available patches immediately and recommended that organizations review their FMC deployments for signs of compromise. The company did not disclose how many organizations were affected or provide details about the specific threat actors exploiting the vulnerability, though CISA’s inclusion in the KEV catalog indicates confirmed active exploitation in the wild.

The discovery of static credentials in a product designed to manage an organization’s primary network security infrastructure has drawn sharp criticism from security researchers. Hardcoded or static credentials represent one of the most fundamental security anti-patterns, and their presence in enterprise firewall management software highlights persistent challenges in secure development practices across the industry.

The Cisco FMC zero-day disclosure comes amid a week of significant cybersecurity developments, including Adobe’s emergency patches for seven maximum-severity vulnerabilities and the revelation that DeepSeek AI models are being used for autonomous cyberattacks. Security teams across the enterprise sector are facing an unusually密集 period of critical vulnerability disclosures that demand immediate attention and resources.

Sources: SecurityWeek, The Hacker News, Cybersecurity News

Author: Technology Desk

React to this dispatch
Share this dispatch Telegram X WhatsApp

discussion

Join the discussion

Your email address will not be published. Required fields are marked *