CVE-2020-3186Medium· 5.3▾ SunlitA vulnerability in the management access list configuration of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured management interface access list on an affected system. T…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 29.2 · likelihood 0.3 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 11.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
1.3%
1.3% → 1.4%
A vulnerability in the management access list configuration of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured management interface access list on an affected system. The vulnerability is due to the configuration of different management access lists, with ports allowed in one access list and denied in another. An attacker could exploit this vulnerability by sending crafted remote management traffic to the local IP address of an affected system. A successful exploit could allow the attacker to bypass the configured management access list policies, and traffic to the management interface would not be properly denied.
secure_firewall_threat_defense >= 6.3.0, < 6.3.0.6secure_firewall_threat_defense >= 6.4.0, < 6.4.0.7secure_firewall_threat_defense >= 6.5.0, < 6.5.0.2asa_5505_firmware = 9.12(1.6)asa_5505_firmware = 201.5(23.16)asa_5510_firmware = 9.12(1.6)asa_5510_firmware = 201.5(23.16)asa_5512-x_firmware = 9.12(1.6)asa_5512-x_firmware = 201.5(23.16)asa_5515-x_firmware = 9.12(1.6)asa_5515-x_firmware = 201.5(23.16)asa_5520_firmware = 9.12(1.6)asa_5520_firmware = 201.5(23.16)asa_5525-x_firmware = 9.12(1.6)asa_5525-x_firmware = 201.5(23.16)asa_5540_firmware = 9.12(1.6)asa_5540_firmware = 201.5(23.16)asa_5545-x_firmware = 9.12(1.6)asa_5545-x_firmware = 201.5(23.16)asa_5550_firmware = 9.12(1.6)asa_5550_firmware = 201.5(23.16)asa_5555-x_firmware = 9.12(1.6)asa_5555-x_firmware = 201.5(23.16)asa_5580_firmware = 9.12(1.6)asa_5580_firmware = 201.5(23.16)asa_5585-x_firmware = 9.12(1.6)asa_5585-x_firmware = 201.5(23.16)Upgrade past the affected range:
secure_firewall_threat_defense 6.5.0.2Connected by shared product, vendor, weakness, or advisory.
CVE-2026-20007Medium· 5.8A vulnerability in the Snort 2 and Snort 3 deep packet inspection of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured Snort rules and allow traffic onto the network …
CVE-2020-3565Medium· 5.8A vulnerability in the TCP Intercept functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured Access Control Policies (including Geolocation) and Service Polices …
CVE-2020-3253Medium· 6.7A vulnerability in the support tunnel feature of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to access the shell of an affected device even though expert mode is disabled
CVE-2019-12627High· 7.5A vulnerability in the application policy configuration of the Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to gain unauthorized read access to sensitive data
CVE-2025-20131Medium· 4.9A vulnerability in the GUI of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker with administrative privileges to upload files to an affected device. This vulnerability is due to improper validation of…
CVE-2025-20224Medium· 5.8A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker t…