CVE-2020-3188Medium· 5.3▾ SunlitA vulnerability in how Cisco Firepower Threat Defense (FTD) Software handles session timeouts for management connections could allow an unauthenticated, remote attacker to cause a buildup of remote management connections to an affected d…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 29.2 · likelihood 0.3 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 11.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
1.7%
1.7% → 1.7%
A vulnerability in how Cisco Firepower Threat Defense (FTD) Software handles session timeouts for management connections could allow an unauthenticated, remote attacker to cause a buildup of remote management connections to an affected device, which could result in a denial of service (DoS) condition. The vulnerability exists because the default session timeout period for specific to-the-box remote management connections is too long. An attacker could exploit this vulnerability by sending a large and sustained number of crafted remote management connections to an affected device, resulting in a buildup of those connections over time. A successful exploit could allow the attacker to cause the remote management interface or Cisco Firepower Device Manager (FDM) to stop responding and cause other management functions to go offline, resulting in a DoS condition. The user traffic that is flowing through the device would not be affected, and the DoS condition would be isolated to remote management only.
secure_firewall_threat_defense >= 6.4.0, < 6.4.0.9secure_firewall_threat_defense >= 6.5.0, < 6.5.0.5asa_5505_firmware = 9.8(3)asa_5505_firmware = 101.6(1.96)asa_5510_firmware = 9.8(3)asa_5510_firmware = 101.6(1.96)asa_5512-x_firmware = 9.8(3)asa_5512-x_firmware = 101.6(1.96)asa_5515-x_firmware = 9.8(3)asa_5515-x_firmware = 101.6(1.96)asa_5520_firmware = 9.8(3)asa_5520_firmware = 101.6(1.96)asa_5525-x_firmware = 9.8(3)asa_5525-x_firmware = 101.6(1.96)asa_5540_firmware = 9.8(3)asa_5540_firmware = 101.6(1.96)asa_5545-x_firmware = 9.8(3)asa_5545-x_firmware = 101.6(1.96)asa_5550_firmware = 9.8(3)asa_5550_firmware = 101.6(1.96)asa_5555-x_firmware = 9.8(3)asa_5555-x_firmware = 101.6(1.96)asa_5580_firmware = 9.8(3)asa_5580_firmware = 101.6(1.96)asa_5585-x_firmware = 9.8(3)asa_5585-x_firmware = 101.6(1.96)Upgrade past the affected range:
secure_firewall_threat_defense 6.5.0.5Connected by shared product, vendor, weakness, or advisory.
CVE-2020-3334High· 7.4A vulnerability in the ARP packet processing of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series Security Appliances could allow an unauthenticated, adjace…
CVE-2018-15462High· 8.6A vulnerability in the TCP ingress handler for the data interfaces that are configured with management access to Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an increase in CPU an…
CVE-2018-15390Medium· 6.8A vulnerability in the FTP inspection engine of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition
CVE-2018-0240High· 8.6Multiple vulnerabilities in the Application Layer Protocol Inspection feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigge…
CVE-2017-6625High· 7.1A "Cisco Firepower Threat Defense 6.0.0 through 6.2.2 and Cisco ASA with FirePOWER Module Denial of Service" vulnerability in the access control policy of Cisco Firepower System Software could allow an authenticated, remote attacker to c…
CVE-2025-20224Medium· 5.8A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker t…