BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

Cisco Firewall Flaw Actively Exploited in the Wild

Cisco warns of actively exploited high-severity ASA and FTD DoS flaw.

  • Cisco has confirmed active exploitation of a high-severity vulnerability (CVE-2026-20349) in its Secure Firewall ASA and FTD Software.
  • The flaw allows an unauthenticated, remote attacker to trigger a denial-of-service (DoS) condition via a crafted HTTP request to the SSL VPN service.
  • CISA has added the vulnerability to its Known Exploited Vulnerabilities catalog, requiring federal agencies to patch by August 14, 2026.

Cisco warned on Tuesday that a new high-severity vulnerability affecting its Secure Firewall Adaptive Security Appliance (ASA) and Threat Defense (FTD) Software has been actively exploited in the wild. The flaw, tracked as CVE-2026-20349 with a CVSS score of 8.6, stems from insufficient error checking when processing HTTP requests.

- Advertisement -

An unauthenticated, remote attacker can exploit this vulnerability by sending a crafted HTTP request to the Remote Access SSL VPN service. “A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition,” Cisco explained in its advisory.

The issue impacts devices running vulnerable versions of ASA or FTD software with specific configurations enabled, including IKEv2 Remote Access VPN, SSL-VPN, or Zero Trust Network Access. Cisco stated that no workarounds are available to address the flaw, which was discovered during internal security testing.

Valerio Brussani was also credited for independently discovering and reporting the vulnerability. While Cisco confirmed active exploitation earlier this month, no details have been released regarding the nature of the attacks, the threat actor’s identity, or which organizations have been targeted.

Consequently, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added the flaw to its Known Exploited Vulnerabilities catalog, as noted in an August 11 alert. The agency now requires Federal Civilian Executive Branch agencies to apply the available fixes by August 14, 2026.

- Advertisement -

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

Binance, RedotPay clash over end of Singapore case in $473M Hong Kong battle

RedotPay expects Binance to discontinue Singapore proceedings after an Aug. 7 hearing, seeking legal...

3 Signs Bitcoin Could Reclaim $100k Sooner – New Study Shows

Bitcoin last traded above $100k in November 2025 before entering a bearish phase.Analysts expect...

AMD Eyes Billions from Helios as AI Revenue Set to Surge in 2027

AMD expects its Helios rack-scale platform to generate billions of dollars in its first...

CFTC orders Kalshi to keep operating amid New York gambling lawsuit

The CFTC invoked emergency authority to order prediction market Kalshi to continue operating, countering...

SEC, CFTC sue Goliath Ventures over $400M crypto Ponzi scheme

The SEC and CFTC filed separate civil lawsuits against Goliath Ventures and founder Christopher...

Must Read

The Ultimate Guide on How to Understand a Cryptocurrency White Paper

Today, cryptocurrency is a popular buzzword. We hear about it on the news, we read about it on the Internet. Yet, people are reluctant to...
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading