Improper Restriction of Security Token Assignment in Cisco Secure Firewall Management Center (formerly Firepower Management Center, FMC) - CVE-2026-76413

 

Improper Restriction of Security Token Assignment in Cisco Secure Firewall Management Center (formerly Firepower Management Center, FMC) - CVE-2026-76413

Published: September 17, 2026


Vulnerability identifier: #VU150517
CSH Severity: High
CVSS v4: 8.8 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-76413
CWE-ID: CWE-1259
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.

The vulnerability exists due to improper management of the Cisco Adaptive Security Device Manager (ASDM) single sign-on (SSO) token. A remote attacker can perform session token forgery techniques to log in as the administrator user and keep legitimate administrators locked out of the ASDM indefinitely.


Affected software

Cisco Secure Firewall Management Center (formerly Firepower Management Center, FMC)

How to mitigate CVE-2026-76413

Install updates from vendor's website.

Cisco Secure Firewall Management Center (formerly Firepower Management Center, FMC) - addressed in versions 7.0.10, 7.2.12, 7.4.8, 7.6.6, 7.7.13, 10.0.2

External References

Related Security Bulletins