cisco-sa-fmc-cmd-inject-S9ZM4EJf: Cisco Secure Firewall Management Center Software Command Injection Vulnerability
A vulnerability in the lockdown mechanism of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, local attacker to perform arbitrary commands as root.This vulnerability is due to insufficient restrictions on remediation modules while in
Affected Software
Event History
Frequently Asked Questions
What is the severity of cisco-sa-fmc-cmd-inject-S9ZM4EJf?
The severity of cisco-sa-fmc-cmd-inject-S9ZM4EJf is medium, with a CVSS score of 4.
How do I fix cisco-sa-fmc-cmd-inject-S9ZM4EJf?
To fix cisco-sa-fmc-cmd-inject-S9ZM4EJf, apply the latest patch or update provided by Cisco for the Secure Firewall Management Center Software.
What systems are affected by cisco-sa-fmc-cmd-inject-S9ZM4EJf?
Cisco Secure Firewall Management Center Software is affected by cisco-sa-fmc-cmd-inject-S9ZM4EJf.
What type of attack can exploit cisco-sa-fmc-cmd-inject-S9ZM4EJf?
An authenticated, local attacker can exploit cisco-sa-fmc-cmd-inject-S9ZM4EJf to execute arbitrary commands as root.
When was cisco-sa-fmc-cmd-inject-S9ZM4EJf published?
cisco-sa-fmc-cmd-inject-S9ZM4EJf was published on March 4, 2026.