PT-2026-93980 · Cisco · Cisco Secure Firewall Management Center

CVE-2026-20324

·

Published

2026-09-16

·

Updated

2026-09-20

CVSS v3.1

9.9

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Cisco Secure Firewall Management Center (FMC) Software (affected versions not specified)
Description A flaw in the sftunnel inter-device communication protocol allows an authenticated remote attacker to execute arbitrary commands with root privileges. The issue stems from incorrect permissions granted to registered sftunnel peers, enabling them to write arbitrary files to any location on the device. An attacker with valid user credentials can exploit this by hijacking an sftunnel communication connection or acting as a registered peer to write a malicious file to the disk. Approximately 1 million instances were identified globally via ZoomEye. No malicious exploitation has been reported.
Recommendations Update to the fixed releases provided by Cisco.

Fix

RCE

Missing Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-20324

Affected Products

Cisco Secure Firewall Management Center