Security
Loading…

CVE-2020-3259

UNKNOWNKnown Exploited
Description

Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) contain an information disclosure vulnerability. An attacker could retrieve memory contents on an affected device, which could lead to the disclosure of confidential information due to a buffer tracking issue when the software parses invalid URLs that are requested from the web services interface. This vulnerability affects only specific AnyConnect and WebVPN configurations.

Timeline
Published:February 15th, 2024 12:00 AM
Last modified:February 15th, 2024 12:00 AM
Added to KEV:February 15th, 2024
CVSS Scoring

No CVSS v3 score available

Affected Software
From NVD CPE configuration data

Vendors

Cisco

Products

Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD)
Weaknesses (CWE)
References & Reports
Advisories, patches, and third-party reports

No references available.

Source: CISA KEV + NVD · Data may lag official sources by up to one minute