Full Disclosure mailing list archives

CVE-2026-20079 - Cisco Secure Firewall Management Center Authentication Bypass to Root RCE


From: Banks Tools <bankstools2026 () gmail com>
Date: Thu, 20 Aug 2026 14:53:01 -0400

CVE-2026-20079 - Cisco Secure Firewall Management Center Authentication
Bypass to Root RCE

Product:
Cisco Secure Firewall Management Center

Tested version:
10.0.1-1

CVE:
CVE-2026-20079

PoC author:
Arian Eidizadeh (CyberAuth)

Public PoC:
https://github.com/CyberAuth/CVE-2026-20079

Technical write-up:
https://banks.tools/writeups/cve-2026-20079-cisco-secure-fmc

The publicly documented authentication-bypass-to-root-RCE chain was
independently reproduced against Cisco Secure FMC 10.0.1-1 with confirmed
uid=0(root) execution.

The published Python implementation provides separate fingerprint,
authentication-bypass check, bounded root-proof, exploit, verification, and
cleanup functionality.

This work does not claim discovery of CVE-2026-20079 or independent
discovery of the original exploit chain. The contribution is the
independent reproduction and public PoC implementation.

References:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2
https://www.vulncheck.com/blog/cisco-fmc-auth-bypass-cve-2026-20079
https://github.com/CyberAuth/CVE-2026-20079
https://banks.tools/writeups/cve-2026-20079-cisco-secure-fmc
_______________________________________________
Sent through the Full Disclosure mailing list
https://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: https://seclists.org/fulldisclosure/


Current thread: