CVE-2020-3311: Cisco Secure Firewall Management Center

Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.

A vulnerability in the web interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. The vulnerability is due to improper input validation of HTTP request parameters. An attacker could exploit this vulnerability by intercepting and modifying an HTTP request from a user. A successful exploit could allow the attacker to redirect the user to a specific malicious web page.

Affected products

  • Cisco Secure Firewall Management Center: before 6.3.0 (fixed in 6.3.0)

Published 2020-05-06. Last modified 2026-06-17.