securityonline.info 8/12/2026, 2:32:03 AM · external

Cisco ASA/FTD flaw lets attackers crash firewalls, CVE-2026-20349

Cisco ASA/FTD flaw lets attackers crash firewalls, CVE-2026-20349
Developing story vulnerability 5 articles tracked
CISA adds Cisco ASA/FTD and Metabase flaws to KEV catalog
CyberSIXT Evidence Panel
CISA KEV Listed in KEV
Patch Patch Status Unknown

A critical vulnerability in Cisco's Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) has been identified, tracked as CVE-2026-20349. This flaw allows unauthenticated attackers to remotely crash the firewall, designated with a CVSS score of 8.6 (High). The vulnerability affects multiple versions of the ASA and FTD software and is already being actively exploited. Cisco recommends urgent upgrading to fixed releases, as no workarounds are available. The flaw arises from weak input validation in the Remote Access SSL VPN service, enabling denial of service conditions.

View Primary Source Via securityonline.info

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline