
CVE-2026-20131
Unauthenticated Remote Code Execution in Cisco Secure Firewall Management Center
A critical pre-authentication Java deserialization vulnerability allowing remote attackers to achieve root-level code execution on Cisco FMC appliances.
A beautiful, safe, and reliable detection tool for CVE-2026-20131.
git clone https://github.com/0xBlackash/CVE-2026-20131.git
cd CVE-2026-20131
pip install requests colorama
sudo python3 CVE-2026-20131.py https://target-fmc.example.com
🚨 Immediate Action Required
Official Fix: Upgrade to the latest patched version of Cisco Secure Firewall Management Center.
This repository is for educational and authorized security testing purposes only.
Unauthorized scanning or exploitation of systems without explicit permission is illegal.
Made with ❤️ for the Cybersecurity Community
Star ⭐ if you find this helpful!
| Attribute | Details |
|---|
| Severity | Critical |
| CVSS Score | 10.0 |
| Vulnerability Type | Java Deserialization |
| Exploited In Wild | Yes (Ransomware campaigns) |
| Patch Available | Yes |