CVE-2026-20079: Cisco Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
Cisco安全防火牆管理中心(FMC)軟體和Cisco安全雲控制(SCC)防火牆管理包含一個使用替代路徑或通道脆弱性的認證旁路,可以讓一個未經認證的遠端攻擊者繞過認證,並在受影響的裝置上執行指令碼檔案,以獲得對基礎作業系統的根訪問。
CISA (English)
Cisco Secure Firewall Management Center (FMC) Software and Cisco Security Cloud Control (SCC) Firewall Management contain an authentication Bypass using an alternate path or channel vulnerability that could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an affected device to obtain root access to the underlying operating system.
- 廠商
- Cisco
- 產品
- Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
- 漏洞
- Cisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel Vulnerability
- 加入日期
- 2026年9月9日
- CISA 修補期限(美國聯邦機關)
- 2026年9月12日
- 已知用於勒索軟體攻擊
- 未知
- 弱點(CWE)
- CWE-288
參考資料
本站僅為資訊目的整理 CISA 目錄,並非資安建議。請遵循廠商指引與官方公告。
最後更新: · 目錄版本 2026.10.02