#VU47942 Arbitrary file upload in Cisco Adaptive Security Appliance (ASA) and Cisco Firewall Threat Defense (FTD) - CVE-2020-3436
Published: October 21, 2020 / Updated: October 27, 2020
Cisco Adaptive Security Appliance (ASA)
Cisco Firewall Threat Defense (FTD)
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to the affected software does not efficiently handle the writing of large files to specific folders on the local file system. A remote attacker can upload a malicious file and cause a denial of service (DoS) condition on the target system.