CVE-2026-20003 describes a SQL injection vulnerability in the REST API of Cisco Secure FMC Software, stemming from insufficient input validation. An authenticated, remote attacker with specific administrative roles could exploit this to gain read access to the database and certain files on the underlying operating system. Rated Medium severity (CVSS 4.9), this vulnerability requires high privileges (PR:H) but has low attack complexity (AC:L). A successful exploit would compromise confidentiality (C:H) but not integrity or availability. There is no evidence of active exploitation, nor are there public exploits in Metasploit, Nuclei, or ExploitDB. Despite this, the vulnerability has garnered some community discussion and media coverage, indicating awareness within the cybersecurity community.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Cisco | Cisco Secure Firewall Management Center (FMC) | 7.0.0, 7.0.0.1, 7.0.1, 7.0.1.1, 7.0.2, 7.0.2.1, 7.0.3, 7.0.4, 7.0.5, 7.0.6, 7.0.6.1, 7.0.6.2, 7.0.6.3, 7.0.7, 7.0.8, 7.0.8.1, 7.1.0, 7.1.0.1, 7.1.0.2, 7.1.0.3, 7.2.0, 7.2.0.1, 7.2.1, 7.2.10, 7.2.10.1, 7.2.10.2, 7.2.2, 7.2.3, 7.2.3.1, 7.2.4, 7.2.4.1, 7.2.5, 7.2.5.1, 7.2.5.2, 7.2.6, 7.2.7, 7.2.8, 7.2.8.1, 7.2.9, 7.3.0, 7.3.1, 7.3.1.1, 7.3.1.2, 7.4.0, 7.4.1, 7.4.1.1, 7.4.2, 7.4.2.1, 7.4.2.2, 7.4.2.3, 7.4.2.4, 7.4.3, 7.6.0, 7.6.1, 7.6.2, 7.6.2.1, 7.6.3, 7.7.0, 7.7.10, 7.7.10.1CNA affected |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.