Cisco Confirms Exploitation of One FMC Vulnerability and Patches a Second Rated Critical
Cisco reports active exploitation of a static credential vulnerability in Secure Firewall Management Center, the platform many organizations use to centrally administer their firewalls, while a separate authentication bypass scored 10.0 can provide unauthenticated root access. The same hot fixes remediate both, no workaround exists for either, and CISA has set an August 1 remediation deadline for federal civilian agencies. This brief covers what Cisco has confirmed, which products require action, the shared indicator of compromise, and the steps organizations operating on premises FMC should take now.
Read the Analysis