#VU114109 Improper Handling of Values in Cisco Firewall Threat Defense (FTD) - CVE-2025-20268
Published: August 15, 2025
Cisco Firewall Threat Defense (FTD)
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to bypass configured policies on the system.
The vulnerability exists due to the URL string is not fully parsed in the Geolocation-Based Remote Access (RA) VPN feature. A remote attacker can send a specially crafted HTTP connection to bypass configured policies and gain access to a network where the connection should have been denied.