THREAT OPS › Threat News › Cisco Secure Firewall Management Center Software sftunnel Root Arbitrary Code Execution Vulnerability
Cisco Secure Firewall Management Center Software sftunnel Root Arbitrary Code Execution Vulnerability
<p>A vulnerability in the sftunnel inter-device communication protocol of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, remote attacker to execute arbitrary commands as <em>root</em>.</p> <p>This vulnerability exists because a registered sftunnel peer has incorrect permissions to write an arbitrary file to any location on the device. An attacker could exploit
MITRE ATT&CK techniques
Indicators of compromise
- CVE-2026-20324cve