cbcvebase.
CVE-2020-3561
published 2020-10-21

CVE-2020-3561: A vulnerability in the Clientless SSL VPN (WebVPN) of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could…

PriorityP427medium4.7CVSS 3.1
AVNACLPRNUIRSCCNILAN
EPSS
1.28%
66.8th percentile
A vulnerability in the Clientless SSL VPN (WebVPN) of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to inject arbitrary HTTP headers in the responses of the affected system. The vulnerability is due to improper input sanitization. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to conduct a CRLF injection attack, adding arbitrary HTTP headers in the responses of the system and redirecting the user to arbitrary websites.

Affected

15 ranges
VendorProductVersion rangeFixed in
ciscoadaptive_security_appliance< 9.6.4.359.6.4.35
ciscoadaptive_security_appliance
ciscoadaptive_security_appliance_software>= 9.10.0 < 9.10.1.439.10.1.43
ciscoadaptive_security_appliance_software>= 9.12.0 < 9.12.3.99.12.3.9
ciscoadaptive_security_appliance_software>= 9.13.0 < 9.13.1.109.13.1.10
ciscoadaptive_security_appliance_software>= 9.14.0 < 9.14.1.109.14.1.10
ciscoadaptive_security_appliance_software>= 9.8.0 < 9.8.4.209.8.4.20
ciscoadaptive_security_appliance_software>= 9.9.0 < 9.9.2.809.9.2.80
ciscocisco_adaptive_security_appliance_software
ciscofirepower_threat_defense< 6.3.0.66.3.0.6
ciscofirepower_threat_defense>= 6.4.0 < 6.4.0.106.4.0.10
ciscofirepower_threat_defense>= 6.5.0 < 6.5.0.56.5.0.5
ciscofirepower_threat_defense>= 6.6.0 < 6.6.16.6.1
fig2dev_projectfig2dev>= 0 < 1:3.2.6a-6ubuntu1.11:3.2.6a-6ubuntu1.1
fig2dev_projectfig2dev>= 0 < 1:3.2.7a-7ubuntu0.11:3.2.7a-7ubuntu0.1

CVSS provenance

nvdv3.14.7MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
nvdv3.04.7MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
osv5.5MEDIUM
vendor_cisco4.7MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.