CVE-2026-20342: Cisco Secure Firewall Management Center Software Low Privileged Arbitrary File Download Vulnerability
A vulnerability in a specific file download API of Cisco Secure FMC Software could allow an authenticated, remote attacker to download arbitrary files from an affected system. This vulnerability exists because user input is not being sanitized. An attacker could exploit this vulnerability by sending a crafted HTTPS request. A successful exploit could allow the attacker to download arbitrary files from the affected system. To exploit this vulnerability, the attacker must have valid credentials for a user account with at least the role of Security Analyst (read-only).
Affected Software
Event History
Frequently Asked Questions
Which accounts can exploit this issue?
An attacker needs valid credentials for a user account with at least the Security Analyst (read-only) role. No user interaction is required.
What access does an attacker need to target a vulnerable system?
The attacker must be authenticated and able to send crafted HTTPS requests to the affected Cisco Secure FMC system. The vulnerability is remotely exploitable with low attack complexity.
What is the potential impact of successful exploitation?
A successful exploit allows arbitrary file downloads from the affected system. The stated impact is high confidentiality impact, with no integrity or availability impact identified.