Cisco Secure Firewall Threat Defense vulnerabilities
269 known vulnerabilities affecting cisco/secure_firewall_threat_defense.
Total CVEs
269
CISA KEV
13
actively exploited
Public exploits
9
Exploited in wild
18
Severity breakdown
CRITICAL6HIGH137MEDIUM125LOW1
Vulnerabilities
Page 8 of 14
CVE-2026-20016P3MEDIUMCVSS 6.7≥ 6.4.0, < 7.0.9≥ 7.1.0, < 7.2.11+3 more2026-03-04
CVE-2026-20016 [MEDIUM] CWE-88 CVE-2026-20016: A vulnerability in the Cisco FXOS Software CLI feature for Cisco Secure Firewall ASA Software and Se
A vulnerability in the Cisco FXOS Software CLI feature for Cisco Secure Firewall ASA Software and Secure FTD Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system with root-level privileges. To exploit this vulnerability, the attacker must have valid administrative credentials on an aff
nvd
CVE-2020-3578P3MEDIUMCVSS 6.5≥ 6.4.0, < 6.4.0.102020-10-21
CVE-2020-3578 [MEDIUM] CWE-863 CVE-2020-3578: A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software an
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured access rule and access parts of the WebVPN portal that are supposed to be blocked. The vulnerability is due to insufficient validation
nvd
CVE-2021-1493P3HIGHCVSS 7.1fixed in 6.4.0.12≥ 6.5.0, < 6.6.3+1 more2021-04-29
CVE-2021-1493 [HIGH] CWE-120 CVE-2021-1493: A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software an
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to cause a buffer overflow on an affected system. The vulnerability is due to insufficient boundary checks for specific data that is provided to the web services
nvd
CVE-2024-20358P3MEDIUMCVSS 6.7v6.2.3v6.2.3.1+78 more2024-04-24
CVE-2024-20358 [MEDIUM] CWE-78 CVE-2024-20358: A vulnerability in the Cisco Adaptive Security Appliance (ASA) restore functionality that is availab
A vulnerability in the Cisco Adaptive Security Appliance (ASA) restore functionality that is available in Cisco ASA Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system with root-level privileges. Administrator-level privileges are requ
nvd
CVE-2026-20050P3MEDIUMCVSS 6.8≥ 7.1.0, < 7.2.11≥ 7.3.0, < 7.4.4+2 more2026-03-04
CVE-2026-20050 [MEDIUM] CWE-404 CVE-2026-20050: A vulnerability in the Do Not Decrypt exclusion feature of the SSL decryption feature of Cisco Secur
A vulnerability in the Do Not Decrypt exclusion feature of the SSL decryption feature of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
This vulnerability is due to improper memory management during the inspection of TLS 1.2 encr
nvd
CVE-2017-6625P3HIGHCVSS 7.1v6.0.0v6.0.1+5 more2017-05-03
CVE-2017-6625 [HIGH] CWE-399 CVE-2017-6625: A "Cisco Firepower Threat Defense 6.0.0 through 6.2.2 and Cisco ASA with FirePOWER Module Denial of
A "Cisco Firepower Threat Defense 6.0.0 through 6.2.2 and Cisco ASA with FirePOWER Module Denial of Service" vulnerability in the access control policy of Cisco Firepower System Software could allow an authenticated, remote attacker to cause an affected system to stop inspecting and processing packets, resulting in a denial of service (DoS) condition. Th
nvd
CVE-2026-20017P3MEDIUMCVSS 6.0≥ 6.4.0, ≤ 6.4.0.18≥ 7.0.0, ≤ 7.0.8.1+7 more2026-03-04
CVE-2026-20017 [MEDIUM] CWE-250 CVE-2026-20017: A vulnerability in the CLI of Cisco Secure FTD Software could allow an authenticated, local attacker
A vulnerability in the CLI of Cisco Secure FTD Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system as root. To exploit this vulnerability, the attacker must have valid administrative credentials on an affected device.
This vulnerability is due to insufficient input validation of use
nvd
CVE-2026-20073P3MEDIUMCVSS 5.8v6.4.0v6.4.0.1+72 more2026-03-04
CVE-2026-20073 [MEDIUM] CWE-284 CVE-2026-20073: A vulnerability in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure
A vulnerability in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to send traffic that should be denied through an affected device.
This vulnerability is due to improper error handling when an affected device that is joining a c
nvd
CVE-2019-1696P3HIGHCVSS 7.4≥ 6.0.0, < 6.2.3.122019-05-03
CVE-2019-1696 [HIGH] CWE-400 CVE-2019-1696: Multiple vulnerabilities in the Server Message Block (SMB) Protocol preprocessor detection engine fo
Multiple vulnerabilities in the Server Message Block (SMB) Protocol preprocessor detection engine for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, adjacent or remote attacker to cause a denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2018-15399P3MEDIUMCVSS 6.8v6.2.02018-10-05
CVE-2018-15399 [MEDIUM] CWE-400 CVE-2018-15399: A vulnerability in the TCP syslog module of Cisco Adaptive Security Appliance (ASA) Software and Cis
A vulnerability in the TCP syslog module of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to exhaust the 1550-byte buffers on an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to a missing boundary check i
nvd
CVE-2021-1476P3MEDIUMCVSS 6.7≥ 6.5.0, < 6.6.4≥ 6.7.0, < 6.7.0.22021-04-29
CVE-2021-1476 [MEDIUM] CWE-78 CVE-2021-1476: A vulnerability in the CLI of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower T
A vulnerability in the CLI of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system (OS) of an affected device. The vulnerability is due to insufficient input validation of commands that are supplied
nvd
CVE-2026-20067P3MEDIUMCVSS 5.8v7.0.0v7.0.0.1+55 more2026-03-04
CVE-2026-20067 [MEDIUM] CWE-787 CVE-2026-20067: Multiple Cisco products are affected by a vulnerability in the Snort 3 detection engine that could a
Multiple Cisco products are affected by a vulnerability in the Snort 3 detection engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection.
This vulnerability is due to incomplete error checking when parsing the Multicast DNS fields of the HTTP hea
nvd
CVE-2026-20066P3MEDIUMCVSS 5.8v7.4.0v7.4.1+14 more2026-03-04
CVE-2026-20066 [MEDIUM] CWE-400 CVE-2026-20066: Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could a
Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection.
This vulnerability is due to an error in the JSTokenizer normalization logic when the HTTP inspection normal
nvd
CVE-2026-20013P3MEDIUMCVSS 5.8≥ 7.2.0, < 7.2.11≥ 7.3.0, < 7.4.3+2 more2026-03-04
CVE-2026-20013 [MEDIUM] CWE-401 CVE-2026-20013: A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD Soft
A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device that may also impact the availability of services to devices elsewhere in the network.
This vulnerability is due to memory exhaustion caused by not fre
nvd
CVE-2026-20015P3MEDIUMCVSS 5.8≥ 7.2.0, < 7.2.11≥ 7.3.0, < 7.4.3+2 more2026-03-04
CVE-2026-20015 [MEDIUM] CWE-401 CVE-2026-20015: A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD Soft
A vulnerability in the IKEv2 feature of Cisco Secure Firewall ASA Software and Cisco Secure FTD Software could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device that may impact the availability of services to devices elsewhere in the network.
This vulnerability is due to a memory leak when parsing IKEv2 packets
nvd
CVE-2026-20007P3MEDIUMCVSS 5.8v6.4.0v6.4.0.1+71 more2026-03-04
CVE-2026-20007 [MEDIUM] CWE-284 CVE-2026-20007: A vulnerability in the Snort 2 and Snort 3 deep packet inspection of Cisco Secure Firewall Threat De
A vulnerability in the Snort 2 and Snort 3 deep packet inspection of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured Snort rules and allow traffic onto the network that should have been dropped.
This vulnerability is due to a logic error in the integration of the Snort Engine
nvd
CVE-2019-12676P3HIGHCVSS 7.4fixed in 6.3.0.4≥ 6.4.0, < 6.4.0.42019-10-02
CVE-2019-12676 [HIGH] CWE-20 CVE-2019-12676: A vulnerability in the Open Shortest Path First (OSPF) implementation of Cisco Adaptive Security App
A vulnerability in the Open Shortest Path First (OSPF) implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, adjacent attacker to cause a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability exists because the affe
nvd
CVE-2019-1693P3MEDIUMCVSS 6.5≥ 6.2.1, < 6.2.3.12≥ 6.3.0, < 6.3.0.32019-05-03
CVE-2019-1693 [MEDIUM] CWE-399 CVE-2019-1693: A vulnerability in the WebVPN service of Cisco Adaptive Security Appliance (ASA) Software and Cisco
A vulnerability in the WebVPN service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper management of authenticated sessions in the WebVPN portal. An a
nvd
CVE-2019-12700P3MEDIUMCVSS 6.5≤ 6.1.0≥ 6.2.0, < 6.2.3.14+2 more2019-10-02
CVE-2019-12700 [MEDIUM] CWE-400 CVE-2019-12700: A vulnerability in the configuration of the Pluggable Authentication Module (PAM) used in Cisco Fire
A vulnerability in the configuration of the Pluggable Authentication Module (PAM) used in Cisco Firepower Threat Defense (FTD) Software, Cisco Firepower Management Center (FMC) Software, and Cisco FXOS Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to improper resource ma
nvd
CVE-2022-20924P3MEDIUMCVSS 6.5v6.6.0v6.6.0.1+22 more2022-11-15
CVE-2022-20924 [MEDIUM] CWE-703 CVE-2022-20924: A vulnerability in the Simple Network Management Protocol (SNMP) feature of Cisco Adaptive Security
A vulnerability in the Simple Network Management Protocol (SNMP) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
This vulnerability is due to insufficient input validation. An
nvd