Critical Security Alert – Cisco FMC RADIUS Vulnerability (CVE-2025-20265)

Critical Security Alert – Cisco FMC RADIUS Vulnerability (CVE-2025-20265)

Cisco has released urgent patches for a maximum severity flaw (CVSS 10.0) in Secure Firewall Management Center (FMC).

• Allows unauthenticated remote attackers to execute commands with root privileges

• Affects FMC versions 7.0.7 & 7.7.0 when RADIUS authentication is enabled

• No workaround except patching immediately (temporary fix: disable RADIUS)

Organizations using Cisco FMC are strongly advised to apply updates now to prevent potential compromise.

Full advisory available on our website: https://nccc.gov.sl/Alerts_Advisories/



This website uses cookies and asks your personal data to enhance your browsing experience. We are committed to protecting your privacy and ensuring your data is handled in compliance with the General Data Protection Regulation (GDPR).