Dismissed
(no matching packages found)
Permalink
CVE-2026-20343
7.5 HIGH
- CVSS version (CVSS): 3.1
- Attack Vector (AV): Network (N)
- Attack Complexity (AC): Low (L)
- Privileges Required (PR): None (N)
- User Interaction (UI): None (N)
- Scope (S): Unchanged (U)
- Confidentiality (C): None (N)
- Integrity (I): None (N)
- Availability (A): High (H)
- Modified Attack Vector (MAV): Network (N)
- Modified Attack Complexity (MAC): Low (L)
- Modified Privileges Required (MPR): None (N)
- Modified User Interaction (MUI): None (N)
- Modified Confidentiality (MC): None (N)
- Modified Scope (MS): Unchanged (U)
- Modified Integrity (MI): None (N)
- Modified Availability (MA): High (H)
Activity log
- Created & dismissed (no matching packages found) suggestion
Cisco Secure Firewall Management Center Software Information Disclosure and Disk Denial of Service Vulnerability
A vulnerability in a critical API for Cisco Secure FMC Software could allow an unauthenticated, remote attacker to download sensitive files and use unbounded disk space. This vulnerability exists because a critical API lacks authentication. An attacker could exploit this vulnerability by repeatedly invoking the API. A successful exploit could allow the attacker to download sensitive files that should be restricted and consume disk space so the device could become unresponsive, causing a DoS condition.
References
Affected products
Cisco Secure Firewall Management Center (FMC)
- ==7.6.2.1
- ==7.4.2.1
- ==7.7.12
- ==7.3.1
- ==7.6.0
- ==7.4.2.3
- ==10.0.1
- ==7.6.3
- ==7.7.0
- ==7.4.4
- ==7.7.10.1
- ==7.6.1
- ==7.4.2.4
- ==7.4.0
- ==7.4.5
- ==7.4.2.2
- ==7.7.10
- ==7.3.1.1
- ==7.6.4
- ==10.0.0
- ==7.4.6
- ==7.6.2
- ==7.4.3
- ==7.7.11
- ==7.3.1.2
- ==7.6.5
- ==7.4.1
- ==7.4.1.1
- ==7.4.2
- ==7.3.0
- ==7.4.7