An improper access control vulnerability exists in the Cisco Intersight Device Connector for Nutanix Prism Central
Description
An improper access control vulnerability exists in the Cisco Intersight Device Connector for Nutanix Prism Central
Remediation
Apply vendor security updates immediately. Monitor for exploitation attempts and review access logs.
---METADATA---
VENDOR: Cisco
PRODUCT: Secure Firewall Management Center (FMC)
AFFECTED_VERSIONS: 7.0.0, 7.0.0.1, 7.0.1, 7.0.1.1, 7.0.2, 7.2.0, 7.0.2.1, 7.0.3
CONFIDENCE: high
MISSING: none
---END_METADATA---
Description Summary:
A hard-coded password vulnerability in Cisco Secure Firewall Management Center allows unauthenticated attackers to potentially bypass security controls.
Executive Summary:
This vulnerability involves a hard-coded password in Cisco Secure Firewall Management Center and is currently being actively exploited in the wild.
Vulnerability Details
CVE-ID: CVE-2026-20316
Affected Software: Cisco Secure Firewall Management Center (FMC)
Affected Versions: 7.0.0, 7.0.0.1, 7.0.1, 7.0.1.1, 7.0.2, 7.2.0, 7.0.2.1, 7.0.3
Vulnerability: This flaw stems from the presence of a hard-coded password within the application, which may allow an unauthenticated attacker to gain unauthorized access or influence system operations.
Business Impact
The presence of a hard-coded credential in a security management platform poses a severe risk to the entire network infrastructure. Given the CVSS score of 9.5, successful exploitation could lead to full compromise of the security appliance, potentially exposing internal network traffic or enabling lateral movement.
Remediation Plan
Immediate Action: Apply the vendor-supplied security updates or mitigations immediately, as this vulnerability is confirmed to be under active exploitation.
Proactive Monitoring: Review system logs for unauthorized access attempts or unusual administrative activity originating from unexpected IP addresses.
Compensating Controls: Ensure the Management Center is not exposed to the public internet and restrict access to the management interface to trusted management subnets only.
Exploitation Status
Public Exploit Available: Unknown
Analyst Notes: This vulnerability is confirmed to be actively exploited in the wild as of July 29, 2026. The nature of this flaw represents a critical failure in access control, necessitating immediate remediation.
Analyst Recommendation
The active exploitation of this vulnerability in the wild makes it a top-tier priority. Organizations must verify their FMC version against the affected list and apply the official Cisco patches without delay to prevent unauthorized access to their security management environment.