• News/
  • https://www.bleepingcomputer.com/news/security/cisa-orders-feds-to-patch-max-severity-cisco-flaw-by-sunday/

CISA orders feds to patch max-severity Cisco flaw by Sunday

BleepingComputer
·
Bill Toulas
·
Published Mar 20, 2026
·
Updated

The Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch a maximum-severity vulnerability, CVE-2026-20131, in Cisco Secure Firewall Management Center (FMC) by Sunday, March 22. Cisco published a security bulletin about the flaw on March 4, urging system administrators to apply the security updates as soon as possible and warning that no workarounds are available. The Cisco Secure Firewall Management Center (FMC) is a centralized administration system for critical Cisco network security appliances, such as firewalls, application control, intrusion prevention, URL filtering, and malware protection. “A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to execute arbitrary Java code as root on an affected device,” Cisco says in the advisory. The issue is caused by insecure deserialization of a user-supplied Java byte stream and is exploitable by sending a specially crafted serialized Java object to the web-based management interface of an affected device. On March 18, the vendor updated its bulletin to warn of active exploitation of CVE-2026-20131 in the wild. Amazon threat intelligence researchers confirmed that threat actors are leveraging the vulnerability in attacks, noting that the Interlock ransomware gang had been exploiting it as a zero-day since the end of January. Amazon stated that the ransomware threat actor exploited CV...

Read full article

Affected Software

1 affected component
Cisco Secure Firewall Management Center (FMC)

Frequently Asked Questions

1

What is the main topic of this article?

The article discusses the CISA's order for federal agencies to patch a critical vulnerability in Cisco's Secure Firewall Management Center.

2

What security implications are discussed in this article?

The article highlights the severe nature of the vulnerability, CVE-2026-20131, which poses significant risks if left unpatched.

3

What products are affected by the vulnerability mentioned?

The affected product is the Cisco Secure Firewall Management Center (FMC).

4

What is the deadline for patching the Cisco vulnerability?

Federal agencies are ordered to apply the necessary patches by Sunday, March 22.

5

Who issued the directive to patch the Cisco vulnerability?

The directive was issued by the Cybersecurity and Infrastructure Security Agency (CISA).

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203