#VU116119 Buffer overflow in Cisco Adaptive Security Appliance (ASA) and Cisco Firewall Threat Defense (FTD) - CVE-2025-20333
Published: September 25, 2025 / Updated: April 1, 2026
Cisco Adaptive Security Appliance (ASA)
Cisco Firewall Threat Defense (FTD)
Cisco Systems, Inc
Description
The vulnerability allows a remote user to compromise the affected system.
The vulnerability exists due to a boundary error within the VPN Web Server when handling HTTP requests. A remote authenticated VPN user can send specially crafted HTTP requests to the affected device, trigger a buffer overflow and execute arbitrary code with root privileges.