Cisco 安全防火墙自适应安全设备(ASA)软件以及 Cisco 安全防火墙威胁防护(FTD)软件中 EIGRP 协议实现存在漏洞,允许未认证的相邻网络攻击者使设备意外重启,从而导致服务拒绝(DoS)状况。 该漏洞源于在处理 EIGRP 更新报文时资源管理不当。攻击者可以通过向受影响设备以较高速率发送精心构造的 EIGRP 更新报文来利用此漏洞。成功利用后,攻击者可引发内存泄漏,最终导致受影响设备意外重启。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Cisco | Cisco Secure Firewall Adaptive Security Appliance (ASA) Software | 9.19.1 |
affected |
9.19.1.5 |
affected | ||
9.19.1.9 |
affected | ||
9.19.1.12 |
affected | ||
9.19.1.18 |
affected | ||
9.20.1 |
affected | ||
9.19.1.22 |
affected | ||
9.20.1.5 |
affected | ||
| … +56 more rows | |||
| Cisco | Cisco Secure Firewall Threat Defense (FTD) Software | 7.3.0 |
affected |
7.3.1 |
affected | ||
7.3.1.1 |
affected | ||
7.4.0 |
affected | ||
7.4.1 |
affected | ||
7.4.1.1 |
affected | ||
7.3.1.2 |
affected | ||
7.6.0 |
affected | ||
| … +17 more rows | |||
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Secure Firewall Adaptive Security Appliance (ASA) Software | 9.19.1 | - |
|
| Cisco | Cisco Secure Firewall Threat Defense (FTD) Software | 7.3.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-20192 | 10.0 CRITICAL | Cisco Identity Services Engine Hardening Release - Access Control Vulnerabilities |
| CVE-2026-76460 | 10.0 CRITICAL | Cisco Identity Services Engine Authentication Bypass Vulnerability |
| CVE-2026-76423 | 10.0 CRITICAL | Cisco ISE API Authentication Bypass Vulnerability |
| CVE-2026-20130 | 10.0 CRITICAL | Cisco Identity Services Engine Hardening Release - Improper Neutralization Vulnerabilities |
| CVE-2026-20332 | 9.9 CRITICAL | Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software |
| CVE-2026-20307 | 9.9 CRITICAL | Cisco Identity Services Engine Remote Code Execution Vulnerability |
| CVE-2026-20234 | 9.9 CRITICAL | Cisco Identity Services Engine Hardening Release - Insuffiencently Protected Credential Vu |
| CVE-2026-20324 | 9.9 CRITICAL | Cisco Secure Firewall Management Center sftunnel Root Arbitrary Code Exectution Vulnerabil |
| CVE-2026-20325 | 9.9 CRITICAL | Cisco Nexus Dashboard Software Security Hardening Release September 2026 - Improper Neutra |
| CVE-2026-20329 | 9.9 CRITICAL | Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software |
| CVE-2026-20322 | 9.9 CRITICAL | Cisco Nexus Dashboard Software Security Hardening Release September 2026 - Improper Access |
| CVE-2026-20330 | 9.9 CRITICAL | Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software |
| CVE-2026-20242 | 9.8 CRITICAL | Cisco Secure Firewall Management Center Software Java Deserialization Remote Code Executio |
| CVE-2026-20326 | 9.8 CRITICAL | Cisco Nexus Dashboard Software Security Hardening Release September 2026 - Missing Authent |
| CVE-2026-20331 | 9.6 CRITICAL | Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software |
| CVE-2026-20306 | 9.1 CRITICAL | Cisco Identity Services Engine Command Injection Vulnerability |
| CVE-2026-20211 | 9.1 CRITICAL | Cisco Identity Services Engine Remote Code Execution Vulnerability |
| CVE-2026-20341 | 9.1 CRITICAL | Cisco Secure Firewall Management Center Software sftunnel Deserialization Root Command Exe |
| CVE-2026-20176 | 9.1 CRITICAL | Cisco Identity Services Engine Remote Code Execution Vulnerability |
| CVE-2026-20284 | 9.1 CRITICAL | Cisco Identity Search Engine SXP REST API SQL Injection Vulnerability |
Showing top 20 of 79 CVEs. View all on vendor page → →
No comments yet