CISA Known Exploited Vulnerability

CVE-2024-20359

Cisco · Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD)

Cisco ASA and FTD Privilege Escalation Vulnerability

Date added
BOD 22-01 due date
CWE CWE-94
Ransomware Unknown

CISA description

Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) contain a privilege escalation vulnerability that can allow local privilege escalation from Administrator to root.

Required action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.