VDB

CVE-2026-20316

CVE-2026-20316 PUBLISHED KEV CVSS 8.5 HIGH

The FMC contains a low-privileged account with static user credentials. An attacker can use these credentials to log in and access sensitive data. There is also a risk of privilege escalation once an attacker has access to an account. The information the attacker can see can be used to learn more about the network environment or try to get through the firewall.

EPSS 35.10% · 98.4th percentile

Risk Scores

CVSS 4.0
8.5
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
EPSS Score
35.10%
98.4th percentile

Timeline

  • Jul 29, 2026 CISA KEV Added
  • Jul 29, 2026 VulnCheck KEV Exploitation
  • Jul 29, 2026 Coalition ESS Score
  • Jul 29, 2026 CVE Published
  • Jul 31, 2026 VulnCheck KEV Exploitation
  • Aug 4, 2026 VulnCheck KEV Exploitation
  • Aug 7, 2026 VulnCheck KEV Exploitation
  • Aug 7, 2026 EPSS Score
  • Aug 12, 2026 Security Advisory
  • Aug 24, 2026 EPSS Score
  • Sep 5, 2026 EPSS Score
  • Sep 9, 2026 VulnCheck KEV Exploitation
Open in Interactive Console →
$ Console Community · 100/wk Open console ›