S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Oct 6, 2025

CVE-2025-20362 Scanner

CVE-2025-20362 Scanner - Authentication Bypass vulnerability in Cisco Secure Firewall ASA & FTD

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, subdomain, ipv4
CostFree
3.1k
Times Used
continuous scan runs
5.8k
Continuously Checked
assets under CS
2
Vulnerabilities Found
confirmed findings
References
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVECVE-2025-20362
6.5
CVSSmedium
Exploitable remotely over the internet · no authentication required.

Update: On November 5, 2025, Cisco became aware of a new attack variant against devices running Cisco Secure ASA Software or Cisco Secure FTD Software releases that are affected by CVE-2025-20333 and CVE-2025-20362. This attack can cause unpatched devices to unexpectedly reload, leading to denial of service (DoS) conditions. Cisco strongly recommends that all customers upgrade to the fixed software releases that are listed in the Fixed Software ["#fs"] section of this advisory. A vulnerability in the VPN web server of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to access restricted URL endpoints that are related to remote access VPN that should otherwise be inaccessible without authentication. This vulnerability is due to improper validation of user-supplied input in HTTP(S) requests. An attacker could exploit this vulnerability by sending crafted HTTP requests to a targeted web server on a device. A successful exploit could allow the attacker to access a restricted URL without authentication.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
Cisco Secure Firewall Adaptive Security Appliance (ASA) Softwareby Cisco
9.8.1
Cisco Secure Firewall Threat Defense (FTD) Softwareby Cisco
6.2.3
Updated Sep 9, 2026View on NVD →
Detail

Cisco Secure Firewall ASA and FTD are advanced security software used in enterprise and service provider networks to provide comprehensive network security. They combine firewall capabilities, VPN support, and more, serving businesses of all sizes globally. The software is relied upon to protect sensitive data, enforce security policies, and support secure remote connections. Network administrators and security professionals implement these tools to manage and mitigate security risks. By ensuring secure network perimeters, they play a crucial role in maintaining the integrity and confidentiality of network communications. Regular updates and configuration reviews are part of maintaining the strength of these firewalls.

This vulnerability is an Authentication Bypass flaw that occurs in the VPN web server component of Cisco Secure Firewall ASA and FTD Software. The issue arises from improper validation of user-supplied input within HTTP(S) requests. As a result, malicious actors could potentially access restricted URL endpoints without authentication. This vulnerability could serve as a gateway for attackers to exploit further, potentially leading to unauthorized access to sensitive information. This kind of vulnerability significantly undermines the security posture of affected systems and requires immediate attention.

Technically, the vulnerable endpoint relates to the handling of crafted HTTP requests by unauthorized users. The flaw lies in the software's failure to correctly verify inputs before processing them. Attackers can exploit this by sending specifically crafted HTTP requests to affected web servers. A successful exploitation allows access to otherwise restricted URLs on the device, circumventing established security controls. Such bypassing of authentication mechanisms could have dire consequences if not promptly addressed.

If exploited, this vulnerability can lead to unauthorized access to sensitive information and functionalities that are expected to be restricted. Malicious actors could leverage this flaw to manipulate data, modify configurations, and possibly further infiltrate the network. The unauthorized access might disrupt services and impact network operations if the attackers alter critical network configurations. Organizations might face significant losses concerning data breaches, privacy violations, and compliance failures. Such violations could also tarnish an organization's reputation and erode stakeholder trust.

REFERENCES

Solution Advice
  • Update Cisco Secure Firewall ASA and FTD Software to the latest version to address this vulnerability.
  • Regularly review and monitor security configurations and access logs for signs of exploitation.
  • Implement robust network monitoring and intrusion detection systems to quickly detect unauthorized access attempts.
  • Conduct regular security assessments and audits to ensure security measures remain effective.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.