cbcvebase.

Cisco Firepower Threat Defense Software vulnerabilities

169 known vulnerabilities affecting cisco/cisco_firepower_threat_defense_software.

Total CVEs
169
CISA KEV
4
actively exploited
Public exploits
1
Exploited in wild
5
Severity breakdown
CRITICAL2HIGH82MEDIUM85

Vulnerabilities

Page 8 of 9
CVE-2023-20264P4MEDIUMCVSS 6.1v7.2.42023-11-01
CVE-2023-20264 [MEDIUM] CWE-601 CVE-2023-20264: A vulnerability in the implementation of Security Assertion Markup Language (SAML) 2.0 single sign-o A vulnerability in the implementation of Security Assertion Markup Language (SAML) 2.0 single sign-on (SSO) for remote access VPN in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to intercept the SAML assertion of a user who is authenticating to a re
nvd
CVE-2021-1256P4MEDIUMCVSS 6.0vn/a2021-04-29
CVE-2021-1256 [MEDIUM] CWE-552 CVE-2021-1256: A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authentic A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to overwrite files on the file system of an affected device by using directory traversal techniques. A successful exploit could cause system instability if important system files are overwritten. This vulnerability is due to insuffi
nvd
CVE-2022-20943P4MEDIUMCVSS 5.8v7.0.0v7.0.0.1+2 more2022-11-15
CVE-2022-20943 [MEDIUM] CWE-244 CVE-2022-20943: Multiple vulnerabilities in the Server Message Block Version 2 (SMB2) processor of the Snort detecti Multiple vulnerabilities in the Server Message Block Version 2 (SMB2) processor of the Snort detection engine on multiple Cisco products could allow an unauthenticated, remote attacker to bypass the configured policies or cause a denial of service (DoS) condition on an affected device. These vulnerabilities are due to improper management of system r
nvd
CVE-2021-34761P4MEDIUMCVSS 6.0vn/a2021-10-27
CVE-2021-34761 [MEDIUM] CWE-73 CVE-2021-34761: A vulnerability in Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local A vulnerability in Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to overwrite or append arbitrary data to system files using root-level privileges. The attacker must have administrative credentials on the device. This vulnerability is due to incomplete validation of user input for a specific CLI command. A
nvd
CVE-2024-20370P4MEDIUMCVSS 6.0v7.1.0v7.1.0.1+23 more2024-10-23
CVE-2024-20370 [MEDIUM] CWE-264 CVE-2024-20370: A vulnerability in the Cisco FXOS CLI feature on specific hardware platforms for Cisco Adaptive Secu A vulnerability in the Cisco FXOS CLI feature on specific hardware platforms for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to elevate their administrative privileges to root. The attacker would need valid administrative credentials on the device to
nvd
CVE-2021-1369P4MEDIUMCVSS 5.4vn/a2021-04-29
CVE-2021-1369 [MEDIUM] CWE-611 CVE-2021-1369: A vulnerability in the REST API of Cisco Firepower Device Manager (FDM) On-Box Software could allow A vulnerability in the REST API of Cisco Firepower Device Manager (FDM) On-Box Software could allow an authenticated, remote attacker to gain read and write access to information that is stored on an affected device. This vulnerability is due to the improper handling of XML External Entity (XXE) entries when parsing certain XML files. An attacker could
nvd
CVE-2022-20940P4MEDIUMCVSS 5.3v6.2.3v6.2.3.1+54 more2022-11-15
CVE-2022-20940 [MEDIUM] CWE-203 CVE-2022-20940: A vulnerability in the TLS handler of Cisco Firepower Threat Defense (FTD) Software could allow an u A vulnerability in the TLS handler of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to gain access to sensitive information. This vulnerability is due to improper implementation of countermeasures against a Bleichenbacher attack on a device that uses SSL decryption policies. An attacker could exploit t
nvd
CVE-2023-20246P4MEDIUMCVSS 5.3v7.0.0v7.0.0.1+19 more2023-11-01
CVE-2023-20246 [MEDIUM] CWE-290 CVE-2023-20246: Multiple Cisco products are affected by a vulnerability in Snort access control policies that could Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remote attacker to bypass the configured policies on an affected system. This vulnerability is due to a logic error that occurs when the access control policies are being populated. An attacker could exploit this vulnerability
nvd
CVE-2022-20713P4MEDIUMCVSS 6.1v6.2.3v6.2.3.1+70 more2022-08-10
CVE-2022-20713 [MEDIUM] CWE-444 CVE-2022-20713: A vulnerability in the VPN web client services component of Cisco Adaptive Security Appliance (ASA) A vulnerability in the VPN web client services component of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct browser-based attacks against users of an affected device. This vulnerability is due to improper validation of input that is passed to
nvd
CVE-2023-20270P4MEDIUMCVSS 5.8v7.1.0v7.1.0.1+10 more2023-11-01
CVE-2023-20270 [MEDIUM] CWE-20 CVE-2023-20270: A vulnerability in the interaction between the Server Message Block (SMB) protocol preprocessor and A vulnerability in the interaction between the Server Message Block (SMB) protocol preprocessor and the Snort 3 detection engine for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass the configured policies or cause a denial of service (DoS) condition on an affected device. This vulnerability is du
nvd
CVE-2019-1980P4MEDIUMCVSS 5.3≥ unspecified, < n/a2019-11-05
CVE-2019-1980 [MEDIUM] CWE-264 CVE-2019-1980: A vulnerability in the protocol detection component of Cisco Firepower Threat Defense Software, Cisc A vulnerability in the protocol detection component of Cisco Firepower Threat Defense Software, Cisco FirePOWER Services Software for ASA, and Cisco Firepower Management Center Software could allow an unauthenticated, remote attacker to bypass filtering protections. The vulnerability is due to improper detection of the initial use of a protocol on a n
nvd
CVE-2023-20267P4MEDIUMCVSS 5.3v6.7.0v6.7.0.1+23 more2023-11-01
CVE-2023-20267 [MEDIUM] CWE-284 CVE-2023-20267: A vulnerability in the IP geolocation rules of Snort 3 could allow an unauthenticated, remote attack A vulnerability in the IP geolocation rules of Snort 3 could allow an unauthenticated, remote attacker to potentially bypass IP address restrictions. This vulnerability exists because the configuration for IP geolocation rules is not parsed properly. An attacker could exploit this vulnerability by spoofing an IP address until they bypass the restric
nvd
CVE-2023-20234P4MEDIUMCVSS 6.0v6.2.3v6.2.3.1+69 more2023-08-23
CVE-2023-20234 [MEDIUM] CWE-73 CVE-2023-20234: A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to cr A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to create a file or overwrite any file on the filesystem of an affected device, including system files. The vulnerability occurs because there is no validation of parameters when a specific CLI command is used. An attacker could exploit this vulnerability b
nvd
CVE-2020-3188P4MEDIUMCVSS 5.3vn/a2020-05-06
CVE-2020-3188 [MEDIUM] CWE-399 CVE-2020-3188: A vulnerability in how Cisco Firepower Threat Defense (FTD) Software handles session timeouts for ma A vulnerability in how Cisco Firepower Threat Defense (FTD) Software handles session timeouts for management connections could allow an unauthenticated, remote attacker to cause a buildup of remote management connections to an affected device, which could result in a denial of service (DoS) condition. The vulnerability exists because the default sessi
nvd
CVE-2024-20493P4MEDIUMCVSS 5.3v6.2.3v6.2.3.1+89 more2024-10-23
CVE-2024-20493 [MEDIUM] CWE-772 CVE-2024-20493: A vulnerability in the login authentication functionality of the Remote Access SSL VPN feature of Ci A vulnerability in the login authentication functionality of the Remote Access SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to deny further VPN user authentications for several minutes, resulting in a temporary denial of service (
nvd
CVE-2024-20355P4MEDIUMCVSS 5.0v6.2.3v6.2.3.1+72 more2024-05-22
CVE-2024-20355 [MEDIUM] CWE-862 CVE-2024-20355: A vulnerability in the implementation of SAML 2.0 single sign-on (SSO) for remote access VPN service A vulnerability in the implementation of SAML 2.0 single sign-on (SSO) for remote access VPN services in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to successfully establish a VPN session on an affected device. This vulnerability is due to improper
nvd
CVE-2022-20950P4MEDIUMCVSS 5.3v7.2.0v7.2.0.12022-11-15
CVE-2022-20950 [MEDIUM] CWE-770 CVE-2022-20950: A vulnerability in the interaction of SIP and Snort 3 for Cisco Firepower Threat Defense (FTD) Softw A vulnerability in the interaction of SIP and Snort 3 for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the Snort 3 detection engine to restart. This vulnerability is due to a lack of error-checking when SIP bidirectional flows are being inspected by Snort 3. An attacker could exploit this vul
nvd
CVE-2023-20031P4MEDIUMCVSS 5.4v6.7.0v6.7.0.1+13 more2023-11-01
CVE-2023-20031 [MEDIUM] CWE-244 CVE-2023-20031: A vulnerability in the SSL/TLS certificate handling of Snort 3 Detection Engine integration with Cis A vulnerability in the SSL/TLS certificate handling of Snort 3 Detection Engine integration with Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the Snort 3 detection engine to restart. This vulnerability is due to a logic error that occurs when an SSL/TLS certificate that is under load is acces
nvd
CVE-2022-20949P4MEDIUMCVSS 4.9v6.2.3v6.2.3.1+57 more2022-11-15
CVE-2022-20949 [MEDIUM] CWE-399 CVE-2022-20949: A vulnerability in the management web server of Cisco Firepower Threat Defense (FTD) Software could A vulnerability in the management web server of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker with high privileges to execute configuration commands on an affected system. This vulnerability exists because access to HTTPS endpoints is not properly restricted on an affected device. An attacker could exploi
nvd
CVE-2020-3352P4MEDIUMCVSS 5.5vn/a2020-10-21
CVE-2020-3352 [MEDIUM] CWE-912 CVE-2020-3352: A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authentic A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to access hidden commands. The vulnerability is due to the presence of undocumented configuration commands. An attacker could exploit this vulnerability by performing specific steps that make the hidden commands accessible. A succes
nvd