Crafted HTTP requests to the management or VPN web server on Cisco ASA and FTD firewalls can crash or force a reload of the device, with no authentication needed and no workaround available.
Every CISA KEV addition, plus critical-severity flaws in the kit that sits at the edge of a network: firewalls, VPN gateways, load balancers, routers, switches and management consoles.
Colour on the left of each entry is the CVSS severity. A pink CISA KEV badge means the flaw is being exploited right now — treat those first, whatever the score says. How each post is sourced and checked is set out in the methodology.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access VPN Web Server Denial of Service Vulnerability
An authenticated VPN user can send a malformed HTTP request to the SSL VPN web server on ASA or FTD and force the firewall to reload, cutting off traffic until it restarts.
Cisco Secure Firewall Management Center Software Authorization Bypass Vulnerabilities
A missing authorization check in Cisco Secure Firewall Management Center lets a logged-in, low-privileged user read troubleshoot files and reports belonging to other domains on the same multitenant FMC instance.
Cisco Secure Firewall Management Center Software Command Injection Vulnerability
An authenticated administrator on Cisco Secure Firewall Management Center’s web interface can send crafted HTTP requests to run arbitrary commands on the underlying OS, but only when lockdown mode is enabled.
Cisco Secure Firewall Management Center and Secure Firewall Threat Defense Software Command Injection Vulnerability
An authenticated administrator on Cisco FMC or FTD’s CLI can break out of the restricted command shell and run arbitrary commands as root on the underlying OS.
Cisco Secure Firewall Management Center Software HTML Injection Vulnerability
A logged-in Security Analyst on Cisco’s Firewall Management Center can inject HTML into generated documents to read local files and trigger SSRF, with no workaround available.
Cisco Secure Firewall Management Center Software RADIUS Remote Code Execution Vulnerability
An unauthenticated attacker can run arbitrary shell commands on Cisco Secure Firewall Management Center if RADIUS authentication is enabled for its web or SSH management interface.
Cisco Secure Firewall Management Center Software XPATH Injection Vulnerability
An input validation gap in the Cisco Secure Firewall Management Center web interface lets an already-authenticated administrator craft requests that pull sensitive data out of the system, but only when lockdown mode is switched on.
Cisco Secure Firewall Management Center Software Cross-Site Scripting Vulnerability
An unauthenticated attacker can inject scripts into the Cisco FMC web management interface, potentially stealing session data or credentials from anyone using the console.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software for Firepower 2100 Series IPv6 over IPsec Denial of Service Vulnerability
A flaw in how Firepower 2100 Series firewalls handle IPv6 packets over the RADIUS proxy used in IPsec VPN lets an unauthenticated remote attacker force the device to reload, with no workaround to fall back on.