8.6

CVSS3.1

CVE-2026-20103 -

A vulnerability in the Remote Access SSL VPN functionality of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to exhaust device memory resulting in a denial of service (DoS) condition …

📅 Published: March 4, 2026, 5:19 p.m. 🔄 Last Modified: April 16, 2026, 8:28 p.m.

8.6

CVSS3.1

CVE-2026-20101 - Remote Device Reload via Crafted SAML Messages in Cisco ASA/FTD

A vulnerability in the SAML 2.0 single sign-on (SSO) feature of Cisco Secure Firewall ASA Software and Secure FTD Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a DoS condition. This vulnerability is due to insufficient error che…

📅 Published: March 4, 2026, 5:19 p.m. 🔄 Last Modified: April 16, 2026, 1:30 p.m.

7.7

CVSS3.1

CVE-2026-20100 - Remote Access SSL VPN Vulnerability Causes Device Reload DoS via Unvalidated Lua Input

A vulnerability in the LUA interperter of the Remote Access SSL VPN feature of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software could allow an authenticated, remote attacker with a valid VPN connection to cause the device to reload u…

📅 Published: March 4, 2026, 5:19 p.m. 🔄 Last Modified: May 4, 2026, 5:01 p.m.

4.9

CVSS3.1

CVE-2026-20003 - Authenticated SQL Injection in Cisco FMC REST API

A vulnerability in the REST API of Cisco Secure FMC Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability is due to inadequate validation of user-supplied input. An attacker could exploit this vulnerability by sending cr…

📅 Published: March 4, 2026, 5:18 p.m. 🔄 Last Modified: April 17, 2026, 1:15 p.m.

8.1

CVSS3.1

CVE-2026-20002 - SQL Injection in Cisco Secure FMC Web Interface Allowing Database and OS File Access

A vulnerability in the web-based management interface of Cisco Secure FMC Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability is due to inadequate validation of user-supplied input. An attacker could exploit this vulne…

📅 Published: March 4, 2026, 5:18 p.m. 🔄 Last Modified: April 16, 2026, 1:30 p.m.

10

CVSS3.1

CVE-2026-20131 - Cisco Secure Firewall Management Center Software Remote Code Execution Vulnerability

A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to execute arbitrary Java code as root on an affected device. This vulnerability is due to insecure deserialization of a user-suppl…

📅 Published: March 4, 2026, 5:17 p.m. 🔄 Last Modified: April 16, 2026, 5:45 a.m.

8.6

CVSS3.1

CVE-2026-20039 - Cisco Adaptive Security Appliance and Firepower Threat Defense Software SSL VPN Authentication Deni…

A vulnerability in the VPN web server of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability…

📅 Published: March 4, 2026, 5:17 p.m. 🔄 Last Modified: April 16, 2026, 8:01 p.m.

6

CVSS3.1

CVE-2026-20044 - Cisco Secure Firewall Management Center Command Injection Vulnerability

A vulnerability in the lockdown mechanism of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, local attacker to perform arbitrary commands as root. This vulnerability is due to insufficient restrictions on remediation modules while in lockdown mode. An attacke…

📅 Published: March 4, 2026, 5:17 p.m. 🔄 Last Modified: April 17, 2026, 1:15 p.m.

10

CVSS3.1

CVE-2026-20079 - Authentication Bypass in Cisco FMC Allows Root Access

A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an affected device to obtain root access to the underlying operating system. This vulnerability is d…

📅 Published: March 4, 2026, 5:17 p.m. 🔄 Last Modified: May 6, 2026, 4:30 p.m.

5.3

CVSS3.1

CVE-2026-20031 - ClamAV CSS Image Parsing Error Handling Denial of Service Vulnerability

A vulnerability in the HTML Cascading Style Sheets (CSS) module of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper error handling when splitting UTF-8 strings. An attacker could explo…

📅 Published: March 4, 2026, 5:17 p.m. 🔄 Last Modified: April 17, 2026, 1:15 p.m.
Total resulsts: 348542
Page 1279 of 34,855
« previous page » next page
Filters