CVE-2020-3283High· 8.6▾ TwilightA vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) handler of Cisco Firepower Threat Defense (FTD) Software when running on the Cisco Firepower 1000 Series platform could allow an unauthenticated, remote att…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 47.3 · likelihood 0.4 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 11.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
2.0%
2.0% → 2.0%
A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) handler of Cisco Firepower Threat Defense (FTD) Software when running on the Cisco Firepower 1000 Series platform could allow an unauthenticated, remote attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to a communication error between internal functions. An attacker could exploit this vulnerability by sending a crafted SSL/TLS message to an affected device. A successful exploit could allow the attacker to cause a buffer underrun, which leads to a crash. The crash causes the affected device to reload.
secure_firewall_threat_defense >= 6.4.0, < 6.4.0.9asa_5505_firmware = 9.12(2.12)asa_5505_firmware = 9.13(0.33)asa_5510_firmware = 9.12(2.12)asa_5510_firmware = 9.13(0.33)asa_5512-x_firmware = 9.12(2.12)asa_5512-x_firmware = 9.13(0.33)asa_5515-x_firmware = 9.12(2.12)asa_5515-x_firmware = 9.13(0.33)asa_5520_firmware = 9.12(2.12)asa_5520_firmware = 9.13(0.33)asa_5525-x_firmware = 9.12(2.12)asa_5525-x_firmware = 9.13(0.33)asa_5540_firmware = 9.12(2.12)asa_5540_firmware = 9.13(0.33)asa_5545-x_firmware = 9.12(2.12)asa_5545-x_firmware = 9.13(0.33)asa_5550_firmware = 9.12(2.12)asa_5550_firmware = 9.13(0.33)asa_5555-x_firmware = 9.12(2.12)asa_5555-x_firmware = 9.13(0.33)asa_5580_firmware = 9.12(2.12)asa_5580_firmware = 9.13(0.33)asa_5585-x_firmware = 9.12(2.12)asa_5585-x_firmware = 9.13(0.33)Upgrade past the affected range:
secure_firewall_threat_defense 6.4.0.9Connected by shared product, vendor, weakness, or advisory.
CVE-2020-3562High· 8.6A vulnerability in the SSL/TLS inspection of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series firewalls could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affec…
CVE-2021-1445High· 8.6Multiple vulnerabilities in Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device
CVE-2021-1402High· 8.6A vulnerability in the software-based SSL/TLS message handler of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (D…
CVE-2019-15992High· 7.2A vulnerability in the implementation of the Lua interpreter integrated in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to execute arbitr…
CVE-2018-0231High· 8.6A vulnerability in the Transport Layer Security (TLS) library of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of th…
CVE-2025-20224Medium· 5.8A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker t…