Full Disclosure mailing list archives
CVE-2026-20079 - Cisco Secure Firewall Management Center Authentication Bypass to Root RCE
From: Banks Tools <bankstools2026 () gmail com>
Date: Thu, 20 Aug 2026 14:53:01 -0400
CVE-2026-20079 - Cisco Secure Firewall Management Center Authentication Bypass to Root RCE Product: Cisco Secure Firewall Management Center Tested version: 10.0.1-1 CVE: CVE-2026-20079 PoC author: Arian Eidizadeh (CyberAuth) Public PoC: https://github.com/CyberAuth/CVE-2026-20079 Technical write-up: https://banks.tools/writeups/cve-2026-20079-cisco-secure-fmc The publicly documented authentication-bypass-to-root-RCE chain was independently reproduced against Cisco Secure FMC 10.0.1-1 with confirmed uid=0(root) execution. The published Python implementation provides separate fingerprint, authentication-bypass check, bounded root-proof, exploit, verification, and cleanup functionality. This work does not claim discovery of CVE-2026-20079 or independent discovery of the original exploit chain. The contribution is the independent reproduction and public PoC implementation. References: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2 https://www.vulncheck.com/blog/cisco-fmc-auth-bypass-cve-2026-20079 https://github.com/CyberAuth/CVE-2026-20079 https://banks.tools/writeups/cve-2026-20079-cisco-secure-fmc _______________________________________________ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: https://seclists.org/fulldisclosure/
Current thread:
- CVE-2026-20079 - Cisco Secure Firewall Management Center Authentication Bypass to Root RCE Banks Tools (Aug 26)
