Threats Tagged 'cve-2026-20323'
View all threats tagged with 'cve-2026-20323'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-20323'
Click on any threat for detailed analysis and mitigation recommendations
A vulnerability in the sftunnel inter-device communication protocol of Cisco Secure FMC and FTD Software allows an unauthenticated adjacent attacker to impersonate a peer device and gain manager-level (root equivalent) access. This occurs due to improper TLS certificate management on the sftunnel management connection. Exploitation requires the sftunnel connection to be down or disrupted to allow the attacker to connect with a crafted TLS certificate and register as a peer with root access. Join the discussion | GCVE Database | 09/16/2026, 21:32:50 UTC Added: 09/17/2026, 02:00:03 UTC |
0 A vulnerability in the sftunnel inter-device communication protocol of Cisco Secure FMC Software and Cisco Secure FTD Software could allow an unauthenticated, adjacent attacker to impersonate the peer device and obtain access at the level of the manager role, which is equivalent to root. This vulnerability is due to improper management of the TLS certificate for the sftunnel management connection. An attacker could exploit this vulnerability by connecting to the sftunnel port using a crafted TLS certificate. A successful exploit could allow the attacker to become a registered sftunnel peer with root access. Note: The attack is successful only if the sftunnel connection is down or the attack can disrupt the sftunnel connection long enough to execute the attack. Join the discussion | CVE Database V5 | 09/16/2026, 20:15:35 UTC Added: 09/16/2026, 20:47:38 UTC |
Showing 1 to 2 of 2 results