THREAT OPS › Threat News › [NVD] CVE-2026-20044 (MEDIUM 6.0) — A vulnerability in the lockdown mechanism of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, local attacker to perform arbitrary commands as root.
This vulnerability is due to insufficient restrictions on remediation modules while in lockdo
[NVD] CVE-2026-20044 (MEDIUM 6.0) — A vulnerability in the lockdown mechanism of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, local attacker to perform arbitrary commands as root. This vulnerability is due to insufficient restrictions on remediation modules while in lockdo
CVE-2026-20044 CVSS: 6.0 MEDIUM Published: 2026-03-04T18:16:17.580
A vulnerability in the lockdown mechanism of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, local attacker to perform arbitrary commands as root.
This vulnerability is due to insufficient restrictions on remediation modules while in lockdown mode. An attacker could exploit this vulnerabilit
MITRE ATT&CK techniques
- CredentialsT1589.001
Indicators of compromise
- CVE-2026-20044cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-20044