Cisco FMC Static Credential Vulnerability Exploited as a Zero-Day

Cisco FMC Static Credential Vulnerability Exploited as a Zero-Day

A critical vulnerability in Cisco Secure Firewall Management Center software allows unauthenticated attackers to access sensitive data using static low-privileged credentials. Active exploitation has been confirmed, and Cisco has issued a High Security Impact Rating because this flaw can be combined with others to elevate privileges. No workarounds exist, so administrators must urgently apply the released hot fixes and rotate all user credentials to secure their systems.

Cisco has assigned this security advisory a Security Impact Rating of High rather than Medium as the score indicates. The reason is that this vulnerability can be used with other Cisco Secure FMC Software vulnerabilities to elevate privileges.

More from this day

2026-07-30