Answer in brief
CVE-2026-20343 records a Unknown severity vulnerability in Cisco Secure Firewall Management Center Software Information Disclosure and Disk Denial of Service Vulnerability. The current sources do not mark it as known exploited. The current feed maps Cisco/Cisco Secure Firewall Management Center (FMC) (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Cisco/Cisco Secure Firewall Management Center (FMC) (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Cisco/Cisco Secure Firewall Management Center (FMC)generic | 7.3.0 || 7.3.1 || 7.3.1.1 || 7.4.0 || 7.4.1 || 7.4.1.1 || 7.3.1.2 || 7.6.0 || 7.4.2 || 7.4.2.1 || 7.7.0 || 7.4.2.2 || 7.6.1 || 7.4.2.3 || 7.6.2 || 7.7.10 || 7.6.2.1 || 7.7.10.1 || 7.4.2.4 || 7.4.3 || 7.6.3 || 7.7.11 || 7.6.4 || 10.0.0 || 7.4.4 || 7.4.5 || 7.7.12 || 7.6.5 || 7.4.6 || 10.0.1 || 7.4.7 | Not reported |
Published upstream
Sep 16, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 16, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Sep 16, 2026
A vulnerability in a critical API for Cisco Secure FMC Software could allow an unauthenticated, remote attacker to download sensitive files and use unbounded disk space. This vulnerability exists because a critical API lacks authentication. An attacker could exploit this vulnerability by repeatedly invoking the API. A successful exploit could allow the attacker to download sensitive files that should be restricted and consume disk space so the device could become unresponsive, causing a DoS condition.
Quoted source text, attributed separately from HOL analysis.