PT-2026-93980 · Cisco · Cisco Secure Firewall Management Center
CVE-2026-20324
·
Published
2026-09-16
·
Updated
2026-09-20
CVSS v3.1
9.9
Critical
| Vector | AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Cisco Secure Firewall Management Center (FMC) Software (affected versions not specified)
Description
A flaw in the sftunnel inter-device communication protocol allows an authenticated remote attacker to execute arbitrary commands with root privileges. The issue stems from incorrect permissions granted to registered sftunnel peers, enabling them to write arbitrary files to any location on the device. An attacker with valid user credentials can exploit this by hijacking an sftunnel communication connection or acting as a registered peer to write a malicious file to the disk. Approximately 1 million instances were identified globally via ZoomEye. No malicious exploitation has been reported.
Recommendations
Update to the fixed releases provided by Cisco.
Fix
RCE
Missing Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Secure Firewall Management Center