Cisco Product Security Update Advisory (CVE-2026-20316)
Overview
A Cisco product security update advisory has been issued. This update addresses vulnerability CVE-2026-20316 discovered in Cisco Secure FMC Software.
Vulnerability Details
This vulnerability stems from the presence of static credentials in Cisco Secure FMC Software, which could allow access to sensitive information. The advisory does not specify any specific attack scenarios resulting from this vulnerability.
Affected Products and Versions
The following versions are affected:
- Cisco Secure FMC Software 7.0. Versions without the applicable hotfix.
- Cisco Secure FMC Software 7.2. Versions without the applicable hotfix.
- Cisco Secure FMC Software 7.4. Versions without the applicable hotfix.
- Cisco Secure FMC Software 7.6. Versions without the applicable hotfix.
- Cisco Secure FMC Software 7.7. Versions without the applicable hotfix.
- Cisco Secure FMC Software 10.0. Versions without the applicable hotfix.
Resolution
A Vulnerability Patch has been provided via the latest update. Apply the following hotfixes to each version:
- Version 7.0.
CiscoFirepowerMgmtCenterHotfix_GB-7.0.9.1-3.Sh.REL.Tar. - Version 7.2.
CiscoSecureFWMgmtCenterHotfixHL-7.2.11.1-4.Sh.REL.Tar. - Version 7.4.
CiscoSecureFWMgmtCenterHotfixHG-7.4.7.1-3.Sh.REL.Tar. - Version 7.6.
CiscoSecureFWMgmtCenterHotfixCY-7.6.5.1-2.Sh.REL.Tar. - Version 7.7.
CiscoSecureFWMgmtCenterHotfixAM-7.7.12.1-2.Sh.REL.Tar. - Version 10.0.
CiscoSecureFWMgmtCenterHotfixP-10.0.1.1-2.Sh.REL.Tar.
Note
You must update to the latest version with Vulnerability Patches, as specified on the official reference site.