Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Cisco Addresses Critical Security Flaws in Networking Gear

Cisco Addresses Critical Security Flaws in Networking Gear

Posted on March 5, 2026 By CWS

Cisco has taken significant steps to enhance the security of its enterprise networking products by releasing patches for 50 vulnerabilities, including critical issues in its Firewall ASA, Secure FMC, and Secure FTD appliances. This comprehensive update, announced on Wednesday, aims to address potential security threats across a wide range of their products.

Critical Vulnerabilities Revealed

The March 2026 security bulletin from Cisco includes details of 25 advisories, with two highlighting critical-severity flaws. One such flaw, CVE-2026-20079, which holds a perfect CVSS score of 10/10, involves an authentication bypass in the Cisco Secure FMC software’s web interface. Exploiting this vulnerability allows attackers to execute arbitrary scripts and gain root access to the operating system.

This security issue arises from an improper system process initiated during boot. Attackers can exploit this flaw by sending specially crafted HTTP requests, potentially gaining complete control over affected devices.

Web Interface Security Concerns

Another critical vulnerability, CVE-2026-20131, also with a CVSS score of 10/10, impacts the Secure FMC software. This flaw allows attackers to execute Java code with root privileges due to insecure deserialization of a user-supplied Java byte stream. By sending malicious serialized objects, attackers can exploit this weakness to execute arbitrary code and elevate their privileges to root.

However, Cisco notes that the risk of exploitation is reduced for FMC management interfaces that are not exposed to the internet, providing some level of security buffer for these interfaces.

Additional Vulnerabilities and User Recommendations

Alongside the critical issues, Cisco has also patched nine high-severity vulnerabilities in its ASA Firewall, Secure FMC, and Secure FTD appliances. These vulnerabilities could potentially enable attackers to conduct SQL injection attacks, initiate denial-of-service conditions, and manipulate sensitive files.

The remaining vulnerabilities in Cisco’s announcement pertain to medium-severity issues, including those found in Webex and ClamAV. Cisco urges users to implement these updates promptly to safeguard their systems against potential threats.

Currently, Cisco reports that there are no known incidents of these vulnerabilities being exploited in the wild. Nevertheless, the company strongly advises users to apply the patches to protect their networks from possible exploitation.

For further details, users are encouraged to visit Cisco’s security advisories page to ensure all necessary updates are applied to their systems.

Security Week News Tags:ASA Firewall, Cisco, critical vulnerabilities, CVE, Cybersecurity, Enterprise, FMC software, network security, Networking, Patch, Secure FTD, Security, security flaws, Updates, Vulnerabilities

Post navigation

Previous Post: Europol Dismantles Major Phishing Service Linked to 64,000 Attacks
Next Post: FBI and Europol Dismantle Cybercrime Forum LeakBase

Related Posts

Record-Breaking 7.3 Tbps DDoS Attack Targets Hosting Provider Record-Breaking 7.3 Tbps DDoS Attack Targets Hosting Provider Security Week News
Millions Impacted by Conduent Data Breach Millions Impacted by Conduent Data Breach Security Week News
Scattered Spider Suspect Arrested in US Scattered Spider Suspect Arrested in US Security Week News
High-Severity Vulnerabilities Patched by Fortinet and Ivanti High-Severity Vulnerabilities Patched by Fortinet and Ivanti Security Week News
Security Firm Andy Frain Says 100,000 People Impacted by Ransomware Attack Security Firm Andy Frain Says 100,000 People Impacted by Ransomware Attack Security Week News
Customer Service Firm 5CA Denies Responsibility for Discord Data Breach Customer Service Firm 5CA Denies Responsibility for Discord Data Breach Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Iraqi Officials Targeted by New Malware Campaign
  • Critical Cisco Firewall Flaw Allows Remote Code Execution
  • Reclaim Security Secures $20M to Enhance Remediation Tech
  • Russian Cyber Campaign Targets Ukraine with New Malware
  • Phishing Alert Targets LastPass Users for Vault Access

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Iraqi Officials Targeted by New Malware Campaign
  • Critical Cisco Firewall Flaw Allows Remote Code Execution
  • Reclaim Security Secures $20M to Enhance Remediation Tech
  • Russian Cyber Campaign Targets Ukraine with New Malware
  • Phishing Alert Targets LastPass Users for Vault Access

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News