
Cisco has released patches for two maximum-severity vulnerabilities in its Secure Firewall Management Center (FMC) software that could allow unauthenticated remote attackers to gain root access.
Critical Vulnerabilities (CVSS 10.0)
The two flaws are highly dangerous as they require no authentication and can be exploited remotely:
Impact & Affected Systems
Secure FMC is the central management hub for Cisco firewalls, controlling policies for intrusion prevention and malware protection. Compromising this system could lead to a complete takeover of an organization’s network security infrastructure.
Mitigation & Recommendations
Cisco’s Product Security Incident Response Team (PSIRT) has not seen active exploitation in the wild yet, nor has public proof-of-concept code been released. However, immediate action is required:
#(fmc) #access #center #cisco #critical #firepower #fixes #management #news #root #vulnerabilitie — News
© Bulletproof Servers. All rights reserved.