VendorsCiscosecure_firewall_threat_defense7.4.0
Vulnerabilities

Cisco Secure Firewall Threat Defense (FTD) 7.4.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

45CVEs
CVE-2026-20065
Multiple Cisco Products Snort 3 TBD Denial of Service Vulnerability
Published 2026-03-04 · Analyzed
5.8EPSS 0.004
CVE-2024-20363
Multiple Cisco products are affected by a vulnerability in the Snort Intrusion Prevention System (IPS) rule engine that could allow an unauthenticated, remote attacker to bypass the configured rules on an affected system. This vulnerability is due to incorrect HTTP packet handling. An attacker could exploit this vulnerability by sending crafted HTTP packets through an affected device. A successful exploit could allow the attacker to bypass configured IPS rules and allow uninspected traffic onto the network.
Published 2024-05-22 · Analyzed
5.8EPSS 0.004
CVE-2026-20007
Cisco Secure Firewall Threat Defense Software Snort Deep Inspection Bypass Vulnerability
Published 2026-03-04 · Analyzed
5.8EPSS 0.002
CVE-2024-20493
A vulnerability in the login authentication functionality of the Remote Access SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to deny further VPN user authentications for several minutes, resulting in a temporary denial of service (DoS) condition. This vulnerability is due to ineffective handling of memory resources during the authentication process. An attacker could exploit this vulnerability by sending crafted packets, which could cause resource exhaustion of the authentication process. A successful exploit could allow the attacker to deny authentication for Remote Access SSL VPN users for several minutes, resulting in a temporary DoS condition.
Published 2024-10-23 · Analyzed
5.3EPSS 0.005
CVE-2026-20021
A vulnerability in the OSPF protocol of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an authenticated, adjacent attacker to exhaust memory on an affected device, resulting in a denial of service (DoS) condition. This vulnerability is due to improperly validating input by the OSPF protocol when parsing packets. An attacker could exploit this vulnerability by by sending crafted OSPF packets to an affected device. A successful exploit could allow the attacker to exhaust memory on the affected device, resulting in a DoS condition.
Published 2026-03-04 · Analyzed
4.3EPSS 0.002
← Prev2 / 2