Cisco FMC Zero-Day Actively Exploited, Static Credentials Could Expose Sensitive Data
시스코 FMC의 제로데이 취약점이 발견되어 공격에 노출되고 있다.
미국 사이버 보안 및 인프라 보안국(CISA)이 시스코의 Secure Firewall Management Center (FMC) 소프트웨어의 보안 취약점을 새로운 Known Exploited Vulnerabilities (KEV) 카탈로그에 추가했다. 이 취약점(CVE-2026-20316)은 인증되지 않은 원격 공격자가 로그인을 할 수 있도록 허용할 수 있는 가능성이 있다. 이로 인해 민감한 데이터가 노출될 수 있는 위험이 크다.
A zero-day vulnerability in Cisco FMC is actively exploited, posing risks of sensitive data exposure.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a newly disclosed security flaw in Cisco's Secure Firewall Management Center (FMC) software to its Known Exploited Vulnerabilities (KEV) catalog. This vulnerability, assigned CVE-2026-20316, could allow an unauthenticated remote attacker to log in, potentially exposing sensitive data. This situation highlights significant risks associated with unpatched vulnerabilities.