Impact
The vulnerability involves a flaw in the privilege check for the remote diagnostics debugger in Cisco Secure Firewall Management Center (FMC). An authenticated user can invoke the debugger and misuse the grant mechanism, allowing them to elevate privileges to the system root level. Root privileges enable a user to fully control the device’s configuration, services, and network traffic.
Affected Systems
Cisco Secure Firewall Management Center (FMC). No specific version information is disclosed, but the issue applies to any installation that exposes the remote diagnostics debugger through the web interface or REST API.
Risk and Exploitability
The reported CVSS score is 8.5, indicating high severity. The EPSS score is less than 1%, suggesting a low likelihood of exploitation, and the vulnerability is not listed in the CISA KEV catalogue. Exploitation requires valid credentials and a multi-step process using the web UI or REST API, contributing to high attack complexity. Successful exploitation results in root-level access and full control over the device.
OpenCVE Enrichment