VDB
CVE-2026-20316
CVE-2026-20316
PUBLISHED
KEV
CVSS 8.5 HIGH
The FMC contains a low-privileged account with static user credentials. An attacker can use these credentials to log in and access sensitive data. There is also a risk of privilege escalation once an attacker has access to an account. The information the attacker can see can be used to learn more about the network environment or try to get through the firewall.
EPSS 35.10% · 98.4th percentile
Risk Scores
CVSS 4.0
8.5
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
EPSS Score
35.10%
98.4th percentile
Timeline
- Jul 29, 2026 CISA KEV Added
- Jul 29, 2026 VulnCheck KEV Exploitation
- Jul 29, 2026 Coalition ESS Score
- Jul 29, 2026 CVE Published
- Jul 31, 2026 VulnCheck KEV Exploitation
- Aug 4, 2026 VulnCheck KEV Exploitation
- Aug 7, 2026 VulnCheck KEV Exploitation
- Aug 7, 2026 EPSS Score
- Aug 12, 2026 Security Advisory
- Aug 24, 2026 EPSS Score
- Sep 5, 2026 EPSS Score
- Sep 9, 2026 VulnCheck KEV Exploitation