Skip to content
VulniPulse

Cisco Firewalls Vulnerabilities & Security Advisories

32 advisories tracked · Cisco Security Advisories · 4 listed in the CISA Known Exploited Vulnerabilities catalog

Every row below is a published Cisco advisory that VulniPulse classified as Firewalls, with the CVEs, affected and fixed releases and exploitation status the vendor stated. Severity mix: 2 critical, 8 high, 21 medium.

Android app · Google Play

Monitor Cisco CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Source

Cisco Security Advisories

Polled via the official Cisco PSIRT RSS feed. Advisory pages are fetched for new items to extract fixed software and workarounds.

Latest Cisco Firewalls advisories

Critical10.0Cisco Exploited CISA KEV

Critical [CVE-2026-20131] Cisco Secure Firewall Management Center Software Remote Code Execution Vulnerability

A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to execute arbitrary Java code as root on an affected device. This vulnerability is due to insecure deserialization of a user-supplied Java byte stream. An attacker could exploit this vulnerability by sending a crafted serialized Java object to the web-based management interface of an affected device. A successful exploit could allow the attacker to execute arbitrary code on the device and elevate privileges to root. Note: If the FMC… Affected products named by the advisory: Cisco Secure Firewall Management Center (FMC) 6.4.0.13; Cisco Secure Firewall Management Center (FMC) 6.4.0.14; Cisco Secure Firewall Management Center (FMC) 6.4.0.15; Cisco Secure Firewall Management Center (FMC) 6.4.0.16; and 5 more.

CVE-2026-20131
FirewallASA / Firepower
Mar 4, 2026
Critical10.0Cisco

Critical [CVE-2026-20079] Cisco Secure Firewall Management Center Software Authentication Bypass Vulnerability

A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an affected device to obtain root access to the underlying operating system. This vulnerability is due to an improper system process that is created at boot time. An attacker could exploit this vulnerability by sending crafted HTTP requests to an affected device. A successful exploit could allow the attacker to execute a variety of scripts and commands that allow root access to the device. Note: If the FMC management interface does not have public internet access, the attack surface that is associated with this vulnerability is reduced. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is part of the March 2026 release of the Cisco Secure Firewall ASA, Secure FMC, and Secure FTD Software Security Advisory Bundled Publication.

CVE-2026-20079
FirewallASA / Firepower
Mar 4, 2026

← All Cisco advisories