Description
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Adaptive Security Appliance Software, Cisco Secure Firewall Threat Defense Software and Cisco Secure Firewall Management Center Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities.  

The vulnerabilities tracked by CVE-2026-20330 are related to improper neutralization issues that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-707.
Published: 2026-09-16
Score: 9.9 Critical
EPSS: < 1% Very Low
KEV: No
Impact: Potential injection leading to unauthorized actions
Action: Apply patch
AI Analysis

Impact

The vulnerability results from improper neutralization of user‑supplied input in Cisco's Secure Firewall products, identified as CWE‑707. This weakness can allow malicious content to be inserted into responses that are then rendered by the device's web interface, potentially enabling unauthorized actions when a user views the content. The description does not specify the exact payload types, but it indicates a flaw that could be exploited if neutralization is bypassed. The impact is limited to the context of the web interface and does not directly imply compromise of the underlying operating system or firmware.

Affected Systems

Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, Cisco Secure Firewall Threat Defense (FTD) Software, and Cisco Secure Firewall Management Center (FMC). Any firmware or software version installed before the hardening release is potentially vulnerable.

Risk and Exploitability

The CVSS score of 9.9 highlights high severity, while the EPSS score of less than 1% suggests that this flaw is not frequently exploited in the wild. The vulnerability is not listed in CISA's KEV catalog. Based on the nature of the flaw, the likely attack vector involves the web management interface of an ASA, FTD, or FMC device, where an attacker could submit crafted input that bypasses neutralization controls. Successful exploitation could enable script execution or other unauthorized actions within the context of the authenticated user or the device itself.

Generated by OpenCVE AI on September 18, 2026 at 01:35 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Review the Cisco security advisory linked in the references to identify the specific firmware or software version that includes the hardening release.
  • Deploy the hardening release update that addresses the improper neutralization issue on all affected ASA, FTD, and FMC devices.
  • After updating, limit access to the web management interface by restricting it to trusted networks or requiring VPN access to reduce exposure to input‑based attacks.

Generated by OpenCVE AI on September 18, 2026 at 01:35 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 19 Sep 2026 23:00:00 +0000

Type Values Removed Values Added
First Time appeared Cisco
Cisco adaptive Security Appliance Software
Cisco secure Firewall Management Center
Cisco secure Firewall Threat Defense
Vendors & Products Cisco
Cisco adaptive Security Appliance Software
Cisco secure Firewall Management Center
Cisco secure Firewall Threat Defense

Fri, 18 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 16 Sep 2026 20:15:00 +0000

Type Values Removed Values Added
Description As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Adaptive Security Appliance Software, Cisco Secure Firewall Threat Defense Software and Cisco Secure Firewall Management Center Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. &nbsp; The vulnerabilities tracked by CVE-2026-20330 are related to improper neutralization issues that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-707.
Title Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software and Secure Firewall Management Center Software Hardening Release - Improper Neutralization Vulnerabilities
Weaknesses CWE-707
References
Metrics cvssV3_1

{'score': 9.9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H'}


Subscriptions

Cisco Adaptive Security Appliance Software Secure Firewall Management Center Secure Firewall Threat Defense
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2026-09-18T19:09:17.609Z

Reserved: 2025-10-08T11:59:15.412Z

Link: CVE-2026-20330

cve-icon Vulnrichment

Updated: 2026-09-18T13:32:47.047Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-16T20:17:23.810

Modified: 2026-09-18T20:17:13.870

Link: CVE-2026-20330

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-19T22:36:46Z

Weaknesses