PT-2026-94000 · Cisco · Secure Fmc
CVE-2026-76412
·
Published
2026-09-16
·
Updated
2026-09-17
CVSS v3.1
8.5
High
| Vector | AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Cisco Secure FMC Software (affected versions not specified)
Description
An issue exists in the remote diagnostics debugger of Cisco Secure FMC Software where an error occurs when verifying the privilege level of a user invoking remote diagnostics. An authenticated remote attacker with valid credentials can exploit this by accessing the device via the web-based management interface or the REST API to enable the remote diagnostics debugger service. This process allows the attacker to grant elevated privileges, potentially resulting in root access.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
LPE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Secure Fmc