Cisco Secure Firewall Threat Defense Software vulnerabilities
46 known vulnerabilities affecting cisco/cisco_secure_firewall_threat_defense_software.
Total CVEs
46
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL1HIGH8MEDIUM37
Vulnerabilities
Page 1 of 3
CVE-2025-20333P1CRITICALCVSS 9.9KEVv6.2.3v6.2.3.1+98 more2025-09-25
CVE-2025-20333 [CRITICAL] CWE-120 CVE-2025-20333: A vulnerability in the VPN web server of Cisco Secure Firewall Adaptive Security Appliance (ASA) Sof
A vulnerability in the VPN web server of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an authenticated, remote attacker to execute arbitrary code on an affected device.
This vulnerability is due to improper validation of user-supplied input in HTTP(S) requests.
nvd
CVE-2026-20103P3HIGHCVSS 8.6v6.4.0.16v6.4.0.17+45 more2026-03-04
CVE-2026-20103 [HIGH] CWE-770 CVE-2026-20103: A vulnerability in the Remote Access SSL VPN functionality of Cisco Secure Firewall Adaptive Securit
A vulnerability in the Remote Access SSL VPN functionality of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to exhaust device memory resulting in a denial of service (DoS) condition to new Remote Access SSL VPN connections. This does no
nvd
CVE-2026-20039P3HIGHCVSS 8.6v6.4.0.1v6.4.0.2+66 more2026-03-04
CVE-2026-20039 [HIGH] CWE-244 CVE-2026-20039: A vulnerability in the VPN web server of Cisco Secure Firewall Adaptive Security Appliance (ASA) Sof
A vulnerability in the VPN web server of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
This vulnerability is due to ineffective memory management of the VPN web
nvd
CVE-2026-20012P3HIGHCVSS 8.6v6.2.3v6.2.3.1+103 more2026-03-25
CVE-2026-20012 [HIGH] CWE-401 CVE-2026-20012: A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco
A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco IOS XE Software, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a memory leak, resulting in a denial of service (DoS) co
nvd
CVE-2026-20101P3HIGHCVSS 8.6v6.4.0v6.4.0.1+73 more2026-03-04
CVE-2026-20101 [HIGH] CWE-330 CVE-2026-20101: A vulnerability in the SAML 2.0 single sign-on (SSO) feature of Cisco Secure Firewall ASA Software a
A vulnerability in the SAML 2.0 single sign-on (SSO) feature of Cisco Secure Firewall ASA Software and Secure FTD Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a DoS condition.
This vulnerability is due to insufficient error checking when processing SAML messages. An attacker could ex
nvd
CVE-2026-20014P3HIGHCVSS 7.7v7.2.0v7.2.0.1+34 more2026-03-04
CVE-2026-20014 [HIGH] CWE-401 CVE-2026-20014: A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD Soft
A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an authenticated, remote attacker with valid VPN user credentials to cause a DoS condition on an affected device that may also impact the availability of services to devices elsewhere in the network.
This vulnerability is due to the imp
nvd
CVE-2026-20105P3HIGHCVSS 7.7v6.4.0v6.4.0.1+73 more2026-03-04
CVE-2026-20105 [HIGH] CWE-401 CVE-2026-20105: A vulnerability in the Remote Access SSL VPN functionality of Cisco Secure Firewall Adaptive Securit
A vulnerability in the Remote Access SSL VPN functionality of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software could allow an authenticated, remote attacker with a valid VPN connection to exhaust device memory resulting in a denial of service (DoS) condition.This does not affect the man
nvd
CVE-2026-20100P3HIGHCVSS 7.7v6.4.0v6.4.0.1+73 more2026-03-04
CVE-2026-20100 [HIGH] CWE-120 CVE-2026-20100: A vulnerability in the LUA interperter of the Remote Access SSL VPN feature of Cisco Secure Firewall
A vulnerability in the LUA interperter of the Remote Access SSL VPN feature of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software could allow an authenticated, remote attacker with a valid VPN connection to cause the device to reload unexpectedly, resulting in a denial of service (DoS) co
nvd
CVE-2026-20049P3HIGHCVSS 7.7v6.4.0.10v6.4.0.11+63 more2026-03-04
CVE-2026-20049 [HIGH] CWE-131 CVE-2026-20049: A vulnerability in the processing of Galois/Counter Mode (GCM)-encrypted Internet Key Exchange versi
A vulnerability in the processing of Galois/Counter Mode (GCM)-encrypted Internet Key Exchange version 2 (IKEv2) IPsec traffic of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affec
nvd
CVE-2026-20016P3MEDIUMCVSS 6.7v7.0.0v7.0.0.1+53 more2026-03-04
CVE-2026-20016 [MEDIUM] CWE-88 CVE-2026-20016: A vulnerability in the Cisco FXOS Software CLI feature for Cisco Secure Firewall ASA Software and Se
A vulnerability in the Cisco FXOS Software CLI feature for Cisco Secure Firewall ASA Software and Secure FTD Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system with root-level privileges. To exploit this vulnerability, the attacker must have valid administrative credentials on an aff
nvd
CVE-2024-20358P3MEDIUMCVSS 6.7v6.2.3v6.2.3.1+103 more2024-04-24
CVE-2024-20358 [MEDIUM] CWE-78 CVE-2024-20358: A vulnerability in the Cisco Adaptive Security Appliance (ASA) restore functionality that is availab
A vulnerability in the Cisco Adaptive Security Appliance (ASA) restore functionality that is available in Cisco ASA Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system with root-level privileges. Administrator-level privileges are requ
nvd
CVE-2026-20050P3MEDIUMCVSS 6.8v7.0.0v7.0.0.1+56 more2026-03-04
CVE-2026-20050 [MEDIUM] CWE-404 CVE-2026-20050: A vulnerability in the Do Not Decrypt exclusion feature of the SSL decryption feature of Cisco Secur
A vulnerability in the Do Not Decrypt exclusion feature of the SSL decryption feature of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
This vulnerability is due to improper memory management during the inspection of TLS 1.2 encr
nvd
CVE-2026-20018P3MEDIUMCVSS 5.9v7.0.0v7.0.0.1+55 more2026-03-04
CVE-2026-20018 [MEDIUM] CWE-27 CVE-2026-20018: A vulnerability in the sftunnel functionality of Cisco Secure Firewall Management Center (FMC) Softw
A vulnerability in the sftunnel functionality of Cisco Secure Firewall Management Center (FMC) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an authenticated, remote attacker with administrative privileges to write arbitrary files as root on the underlying operating system.
This vulnerability is due to insufficient val
nvd
CVE-2025-20359P3MEDIUMCVSS 6.5v7.4.1v7.4.1.1+8 more2025-10-15
CVE-2025-20359 [MEDIUM] CWE-127 CVE-2025-20359: Multiple Cisco products are affected by a vulnerability in the Snort 3 HTTP Decoder that could allow
Multiple Cisco products are affected by a vulnerability in the Snort 3 HTTP Decoder that could allow an unauthenticated, remote attacker to cause the disclosure of possible sensitive data or cause the Snort 3 Detection Engine to crash.
This vulnerability is due to an error in the logic of buffer handling when the MIME fields of the HTTP header are
nvd
CVE-2026-20063P3MEDIUMCVSS 6.0v7.6.0v7.7.0+5 more2026-03-04
CVE-2026-20063 [MEDIUM] CWE-88 CVE-2026-20063: A vulnerability in the CLI of Cisco Secure FTD Software could allow an authenticated, local attacker
A vulnerability in the CLI of Cisco Secure FTD Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system as root. To exploit this vulnerability, the attacker must have valid administrative credentials on an affected device.
This vulnerability is due to insufficient input validation of user
nvd
CVE-2026-20017P3MEDIUMCVSS 6.0v6.4.0.1v6.4.0.2+74 more2026-03-04
CVE-2026-20017 [MEDIUM] CWE-250 CVE-2026-20017: A vulnerability in the CLI of Cisco Secure FTD Software could allow an authenticated, local attacker
A vulnerability in the CLI of Cisco Secure FTD Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system as root. To exploit this vulnerability, the attacker must have valid administrative credentials on an affected device.
This vulnerability is due to insufficient input validation of use
nvd
CVE-2026-20073P3MEDIUMCVSS 5.8v6.4.0.1v6.4.0.2+73 more2026-03-04
CVE-2026-20073 [MEDIUM] CWE-284 CVE-2026-20073: A vulnerability in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure
A vulnerability in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to send traffic that should be denied through an affected device.
This vulnerability is due to improper error handling when an affected device that is joining a c
nvd
CVE-2026-20067P3MEDIUMCVSS 5.8v7.0.0v7.0.0.1+55 more2026-03-04
CVE-2026-20067 [MEDIUM] CWE-787 CVE-2026-20067: Multiple Cisco products are affected by a vulnerability in the Snort 3 detection engine that could a
Multiple Cisco products are affected by a vulnerability in the Snort 3 detection engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection.
This vulnerability is due to incomplete error checking when parsing the Multicast DNS fields of the HTTP hea
nvd
CVE-2026-20066P3MEDIUMCVSS 5.8v7.4.0v7.4.1+14 more2026-03-04
CVE-2026-20066 [MEDIUM] CWE-400 CVE-2026-20066: Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could a
Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection.
This vulnerability is due to an error in the JSTokenizer normalization logic when the HTTP inspection normal
nvd
CVE-2026-20053P3MEDIUMCVSS 5.8v7.2.0v7.2.0.1+35 more2026-03-04
CVE-2026-20053 [MEDIUM] CWE-122 CVE-2026-20053: Multiple Cisco products are affected by a vulnerability in the Snort 3 VBA feature that could allow
Multiple Cisco products are affected by a vulnerability in the Snort 3 VBA feature that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to crash.
This vulnerability is due to improper range checking when decompressing VBA data, which is user controlled. An attacker could exploit this vulnerability by sending cra
nvd
1 / 3Next →