A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to execute arbitrary Java code as root on an affected device. This vulnerability is due to insecure deserialization of a user-supplied Java byte stream. An attacker could exploit this vulnerability by sending a crafted serialized Java object to the web-based management interface of an affected device. A successful exploit could allow the attacker to execute arbitrary code on the device and elevate privileges to root. Note: If the FMC management interface does not have public internet access, the attack surface that is associated with this vulnerability is reduced.
Monitor this advisory for an available fix and review any installs of the affected package.
Local check
hol-guard supply-chain scanCisco Secure Firewall Management Center Software Remote Code Execution Vulnerability affects Cisco/Cisco Secure Firewall Management Center (FMC) (generic). Severity is high. This vulnerability is known to be exploited in the wild. A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to execute arbitrary Java code as root on an affected device. This vulnerability is due to insecure deserialization of a user-supplied Java byte stream. An attacker could exploit this vulnerability by sending a crafted serialized Java object to the web-based management interface of an affected device. A successful exploit could allow the attacker to execute arbitrary code on the device and elevate privileges to root. Note: If the FMC management interface does not have public internet access, the attack surface that is associated with this vulnerability is reduced.
AI coding agents often install or upgrade packages automatically in generic. A high vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to execute arbitrary Java code as root on an affected device. This vulnerability is due to insecure deserialization of a user-supplied Java byte stream. An attacker could exploit this vulnerability by sending a crafted serialized Java object to the web-based management interface of an affected device. A successful exploit could allow the attacker to execute arbitrary code on the device and elevate privileges to root. Note: If the FMC management interface does not have public internet access, the attack surface that is associated with this vulnerability is reduced.
Monitor this advisory for an available fix and review any installs of the affected package.
Local check
hol-guard supply-chain scanCisco Secure Firewall Management Center Software Remote Code Execution Vulnerability affects Cisco/Cisco Secure Firewall Management Center (FMC) (generic). Severity is high. This vulnerability is known to be exploited in the wild. A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to execute arbitrary Java code as root on an affected device. This vulnerability is due to insecure deserialization of a user-supplied Java byte stream. An attacker could exploit this vulnerability by sending a crafted serialized Java object to the web-based management interface of an affected device. A successful exploit could allow the attacker to execute arbitrary code on the device and elevate privileges to root. Note: If the FMC management interface does not have public internet access, the attack surface that is associated with this vulnerability is reduced.
AI coding agents often install or upgrade packages automatically in generic. A high vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|
| Cisco/Cisco Secure Firewall Management Center (FMC)generic | 7.0.0 || 7.0.0.1 || 7.0.1 || 7.1.0 || 6.4.0.13 || 7.0.1.1 || 6.4.0.14 || 7.1.0.1 || 7.0.2 || 6.4.0.15 || 7.2.0 || 7.0.2.1 || 7.0.3 || 7.1.0.2 || 7.2.0.1 || 7.0.4 || 7.2.1 || 7.0.5 || 6.4.0.16 || 7.3.0 || 7.2.2 || 7.3.1 || 7.2.3 || 7.1.0.3 || 7.2.3.1 || 7.2.4 || 7.0.6 || 7.2.4.1 || 7.2.5 || 7.3.1.1 || 7.4.0 || 6.4.0.17 || 7.0.6.1 || 7.2.5.1 || 7.4.1 || 7.2.6 || 7.4.1.1 || 7.0.6.2 || 6.4.0.18 || 7.2.7 || 7.2.5.2 || 7.3.1.2 || 7.2.8 || 7.6.0 || 7.4.2 || 7.2.8.1 || 7.0.6.3 || 7.4.2.1 || 7.2.9 || 7.0.7 || 7.7.0 || 7.4.2.2 || 7.2.10 || 7.6.1 || 7.4.2.3 || 7.0.8 || 7.6.2 || 7.7.10 || 7.2.10.1 || 7.0.8.1 || 7.6.2.1 || 7.2.10.2 || 7.7.10.1 || 7.4.2.4 || 7.4.3 || 7.7.11 || 7.6.4 || 10.0.0 || 7.4.4 || 7.4.5 | Not reported |
|---|
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard| Cisco/Cisco Secure Firewall Management Center (FMC)generic | 7.0.0 || 7.0.0.1 || 7.0.1 || 7.1.0 || 6.4.0.13 || 7.0.1.1 || 6.4.0.14 || 7.1.0.1 || 7.0.2 || 6.4.0.15 || 7.2.0 || 7.0.2.1 || 7.0.3 || 7.1.0.2 || 7.2.0.1 || 7.0.4 || 7.2.1 || 7.0.5 || 6.4.0.16 || 7.3.0 || 7.2.2 || 7.3.1 || 7.2.3 || 7.1.0.3 || 7.2.3.1 || 7.2.4 || 7.0.6 || 7.2.4.1 || 7.2.5 || 7.3.1.1 || 7.4.0 || 6.4.0.17 || 7.0.6.1 || 7.2.5.1 || 7.4.1 || 7.2.6 || 7.4.1.1 || 7.0.6.2 || 6.4.0.18 || 7.2.7 || 7.2.5.2 || 7.3.1.2 || 7.2.8 || 7.6.0 || 7.4.2 || 7.2.8.1 || 7.0.6.3 || 7.4.2.1 || 7.2.9 || 7.0.7 || 7.7.0 || 7.4.2.2 || 7.2.10 || 7.6.1 || 7.4.2.3 || 7.0.8 || 7.6.2 || 7.7.10 || 7.2.10.1 || 7.0.8.1 || 7.6.2.1 || 7.2.10.2 || 7.7.10.1 || 7.4.2.4 || 7.4.3 || 7.7.11 || 7.6.4 || 10.0.0 || 7.4.4 || 7.4.5 | Not reported |
|---|
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard