Cisco Secure Firewall Threat Defense Software vulnerabilities
46 known vulnerabilities affecting cisco/cisco_secure_firewall_threat_defense_software.
Total CVEs
46
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL1HIGH8MEDIUM37
Vulnerabilities
Page 3 of 3
CVE-2026-20025P4MEDIUMCVSS 6.8v6.4.0v6.4.0.1+73 more2026-03-04
CVE-2026-20025 [MEDIUM] CWE-190 CVE-2026-20025: A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Soft
A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an authenticated, adjacent attacker to cause an affected device to reload unexpectedly, resulting in a DoS condition. To exploit this vulnerability, the attacker must have the OSPF secret key.
This vulnerability is due to insufficient
nvd
CVE-2026-20020P4MEDIUMCVSS 5.7v6.4.0v6.4.0.1+73 more2026-03-04
CVE-2026-20020 [MEDIUM] CWE-20 CVE-2026-20020: A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Soft
A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an unauthenticated, adjacent attacker to cause an affected device to reload unexpectedly, resulting in a DoS condition. If OSPF authentication is enabled, the attacker must know the secret key to exploit this vulnerability.
This vulner
nvd
CVE-2026-20064P4MEDIUMCVSS 6.5v6.4.0v6.4.0.1+73 more2026-03-04
CVE-2026-20064 [MEDIUM] CWE-476 CVE-2026-20064: A vulnerability in of Cisco Secure Firewall Threat Defense (FTD) Software could allow an authenticat
A vulnerability in of Cisco Secure Firewall Threat Defense (FTD) Software could allow an authenticated, local attacker to cause the device to unexpectedly reload, causing a denial of service (DoS) condition.
This vulnerability is due to improper validation of user-supplied input. An attacker with a low-privileged account could exploit this vulnerabi
nvd
CVE-2026-20024P4MEDIUMCVSS 5.7v6.4.0v6.4.0.1+66 more2026-03-04
CVE-2026-20024 [MEDIUM] CWE-119 CVE-2026-20024: A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Soft
A vulnerability in the OSPF protocol of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an authenticated, adjacent attacker to cause an affected device to reload unexpectedly, resulting in a DoS condition. To exploit this vulnerability, the attacker must have the OSPF secret key.
This vulnerability is due to heap corrupt
nvd
CVE-2026-20069P4MEDIUMCVSS 4.3v6.4.0.1v6.4.0.2+73 more2026-03-04
CVE-2026-20069 [MEDIUM] CWE-444 CVE-2026-20069: A vulnerability in the VPN web services component of Cisco Secure Firewall Adaptive Security Applian
A vulnerability in the VPN web services component of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct browser-based attacks against users of an affected device.
This vulnerability is due to improper validation of HTTP r
nvd
CVE-2026-20021P4MEDIUMCVSS 4.3v6.4.0v6.4.0.1+74 more2026-03-04
CVE-2026-20021 [MEDIUM] CWE-401 CVE-2026-20021: A vulnerability in the OSPF protocol of Cisco Secure Firewall Adaptive Security Appliance (ASA) Soft
A vulnerability in the OSPF protocol of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an authenticated, adjacent attacker to exhaust memory on an affected device, resulting in a denial of service (DoS) condition.
This vulnerability is due to improperly validating
nvd
← Previous3 / 3