📦 Firepower Threat Defense

by Cisco

🔍 What is Firepower Threat Defense?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-20333

CRITICAL CVSS 9.9 Sep 25, 2025

This critical vulnerability in Cisco ASA and FTD VPN web servers allows authenticated remote attackers to execute arbitrary code as root. Attackers with valid VPN credentials can exploit improper inpu...

CVE-2025-20363

CRITICAL CVSS 9.0 Sep 25, 2025

This critical vulnerability allows remote attackers to execute arbitrary code with root privileges on affected Cisco devices. Unauthenticated attackers can exploit Cisco ASA/FTD devices, while authent...

CVE-2024-20412

CRITICAL CVSS 9.3 Oct 23, 2024

This vulnerability allows unauthenticated local attackers to access Cisco Firepower Threat Defense devices using static hard-coded credentials. Attackers can retrieve sensitive information, modify con...

CVE-2021-44228

CRITICAL CVSS 10.0 Dec 10, 2021

CVE-2021-44228 (Log4Shell) is a critical remote code execution vulnerability in Apache Log4j2 that allows attackers to execute arbitrary code by exploiting JNDI lookups in log messages. This affects a...

CVE-2025-20182

HIGH CVSS 8.6 May 7, 2025

An unauthenticated remote attacker can cause affected Cisco network devices to crash and reload by sending specially crafted IKEv2 protocol messages. This vulnerability affects Cisco ASA, FTD, IOS, an...

CVE-2022-20685

HIGH CVSS 7.5 Nov 15, 2024

An integer overflow vulnerability in Snort's Modbus preprocessor allows remote attackers to cause denial of service by sending crafted Modbus traffic. This affects devices running vulnerable Snort ver...

CVE-2024-20494

HIGH CVSS 8.6 Oct 23, 2024

A TLS 1.3 handshake vulnerability in Cisco ASA and FTD software allows unauthenticated remote attackers to trigger a device reload, causing denial of service. This affects organizations using affected...

CVE-2024-20408

HIGH CVSS 7.7 Oct 23, 2024

This vulnerability allows authenticated remote attackers with VPN credentials to crash Cisco ASA/FTD devices via crafted HTTPS POST requests, causing denial of service. It affects systems with Dynamic...

CVE-2024-20402

HIGH CVSS 8.6 Oct 23, 2024

A memory management flaw in Cisco ASA and FTD SSL VPN allows unauthenticated remote attackers to trigger device reboots via crafted SSL/TLS packets, causing denial of service. This affects organizatio...

CVE-2024-20268

HIGH CVSS 7.7 Oct 23, 2024

A vulnerability in Cisco ASA and FTD software allows authenticated remote attackers to cause denial of service by sending crafted SNMP packets. The insufficient input validation in SNMP feature enable...

CVE-2023-20083

HIGH CVSS 8.6 Nov 1, 2023

A vulnerability in Cisco Firepower Threat Defense (FTD) Software's ICMPv6 inspection with Snort 2 allows remote attackers to cause 100% CPU usage via crafted ICMPv6 packets, resulting in a denial of s...

CVE-2023-20086

HIGH CVSS 8.6 Nov 1, 2023

An unauthenticated remote attacker can send crafted ICMPv6 messages to Cisco ASA or FTD devices with IPv6 enabled, causing the device to reload and creating a denial of service condition. This affects...

CVE-2023-20244

HIGH CVSS 8.6 Nov 1, 2023

An unauthenticated remote attacker can send crafted packets to Cisco Firepower Threat Defense (FTD) Software on Firepower 2100 Series Firewalls, causing a denial of service by depleting memory blocks....

CVE-2023-44487

HIGH CVSS 7.5 Oct 10, 2023

CVE-2023-44487 is an HTTP/2 protocol vulnerability that allows attackers to cause denial of service by rapidly resetting streams, consuming server resources. This affects any system using HTTP/2, incl...

CVE-2023-20107

HIGH CVSS 7.5 Mar 23, 2023

This vulnerability allows unauthenticated remote attackers to discover private cryptographic keys on affected Cisco ASA/FTD devices due to insufficient entropy in the random number generator. Attacker...

CVE-2022-20715

HIGH CVSS 8.6 May 3, 2022

This vulnerability allows an unauthenticated remote attacker to cause a denial of service (DoS) by sending crafted requests to the SSL VPN features of Cisco ASA and FTD software, potentially forcing t...

CVE-2022-20742

HIGH CVSS 7.4 May 3, 2022

This vulnerability allows an unauthenticated remote attacker in a man-in-the-middle position to decrypt, read, modify, and re-encrypt data transmitted across affected IPsec IKEv2 VPN tunnels. It affec...

CVE-2022-20745

HIGH CVSS 8.6 May 3, 2022

An unauthenticated remote attacker can cause a denial of service (DoS) by sending a crafted HTTPS request to Cisco ASA or FTD devices with web services interface for remote access VPN enabled. This af...

CVE-2022-20751

HIGH CVSS 8.6 May 3, 2022

This vulnerability in Cisco Firepower Threat Defense (FTD) Software allows an unauthenticated remote attacker to cause a denial of service (DoS) by exploiting insufficient memory management in the Sno...

CVE-2022-20759

HIGH CVSS 8.8 May 3, 2022

This vulnerability allows authenticated but unprivileged remote attackers to escalate privileges to level 15 (highest administrative level) on Cisco ASA and FTD devices via the web services interface....

CVE-2022-20767

HIGH CVSS 8.6 May 3, 2022

This vulnerability allows unauthenticated remote attackers to cause denial of service on Cisco Firepower Threat Defense devices by sending crafted UDP packets that trigger improper DNS reputation rule...

CVE-2021-1573

HIGH CVSS 8.6 Jan 11, 2022

An unauthenticated remote attacker can send a malicious HTTPS request to Cisco ASA or FTD devices, causing them to reload and creating a denial of service condition. This affects devices with the web ...

CVE-2021-34762

HIGH CVSS 8.1 Oct 27, 2021

This vulnerability allows authenticated attackers to perform directory traversal attacks on Cisco Firepower Management Center (FMC) Software via the web management interface. Attackers can read or wri...

CVE-2021-34781

HIGH CVSS 8.6 Oct 27, 2021

This vulnerability in Cisco Firepower Threat Defense (FTD) Software allows unauthenticated remote attackers to cause denial of service by flooding SSH connections. The attack exhausts system resources...

CVE-2021-34792

HIGH CVSS 8.6 Oct 27, 2021

This vulnerability allows unauthenticated remote attackers to cause a denial of service (DoS) by overwhelming Cisco ASA and FTD devices with excessive connections. The improper resource management cau...

CVE-2021-40116

HIGH CVSS 8.6 Oct 27, 2021

This vulnerability in Cisco products with Snort3 configured allows unauthenticated remote attackers to cause denial of service by sending crafted IP packets. The attack causes through traffic to be dr...

CVE-2021-40118

HIGH CVSS 8.6 Oct 27, 2021

An unauthenticated remote attacker can send a malicious HTTPS request to Cisco ASA/FTD devices to trigger a denial of service condition, causing the device to reload. This affects Cisco Adaptive Secur...

CVE-2021-1422

HIGH CVSS 7.7 Jul 16, 2021

A logic error in Cisco ASA and FTD software cryptography modules allows authenticated remote attackers or unauthenticated man-in-the-middle attackers to cause a denial of service by sending malicious ...

CVE-2021-1448

HIGH CVSS 7.8 Apr 29, 2021

This vulnerability allows authenticated local attackers on Cisco Firepower Threat Defense devices running in multi-instance mode to execute arbitrary commands with root privileges. Attackers can explo...

CVE-2021-1493

HIGH CVSS 8.5 Apr 29, 2021

This vulnerability allows authenticated remote attackers to trigger a buffer overflow in Cisco ASA and FTD software web services interface by sending malicious HTTP requests. Successful exploitation c...

CVE-2021-1501

HIGH CVSS 8.6 Apr 29, 2021

This vulnerability allows unauthenticated remote attackers to cause a denial of service by sending crafted SIP traffic through affected Cisco ASA and FTD devices. The vulnerability triggers a crash du...

CVE-2021-1402

HIGH CVSS 8.6 Apr 29, 2021

An unauthenticated remote attacker can send crafted SSL/TLS messages through Cisco Firepower Threat Defense devices performing software-based SSL decryption, causing a process crash that triggers a de...

CVE-2024-20431

MEDIUM CVSS 5.8 Oct 23, 2024

This vulnerability in Cisco Firepower Threat Defense (FTD) Software allows unauthenticated remote attackers to bypass geolocation-based access control policies by sending traffic through affected devi...

CVE-2024-20407

MEDIUM CVSS 5.8 Oct 23, 2024

This vulnerability allows unauthenticated remote attackers to bypass security policies on Cisco Firepower Threat Defense devices by exploiting a logic error in TCP Intercept handling with Snort 3. Onl...

CVE-2024-20384

MEDIUM CVSS 5.8 Oct 23, 2024

A logic error in Cisco ASA and FTD software's Network Service Group ACL implementation allows unauthenticated remote attackers to bypass configured access control rules. This affects organizations usi...

CVE-2024-20355

MEDIUM CVSS 5.0 May 22, 2024

This vulnerability allows authenticated remote attackers to bypass SAML authorization controls in Cisco ASA/FTD VPN services. Attackers can intercept their valid SAML token and reuse it to connect thr...

CVE-2024-20363

MEDIUM CVSS 5.8 May 22, 2024

This vulnerability allows unauthenticated remote attackers to bypass Cisco Snort IPS rules by sending specially crafted HTTP packets. Affected systems include Cisco Firepower Threat Defense, Secure Fi...

CVE-2024-20261

MEDIUM CVSS 5.8 May 22, 2024

A vulnerability in Cisco Firepower Threat Defense (FTD) software allows attackers to bypass file policies that should block encrypted archive files. Unauthenticated remote attackers can send crafted e...