Permissions, Privileges, and Access Controls in Cisco Adaptive Security Appliance (ASA) and Cisco Firewall Threat Defense (FTD) - CVE-2024-20370

 

Permissions, Privileges, and Access Controls in Cisco Adaptive Security Appliance (ASA) and Cisco Firewall Threat Defense (FTD) - CVE-2024-20370

Published: October 24, 2024


Vulnerability identifier: #VU99322
CSH Severity: Low
CVSS v4: 8.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2024-20370
CWE-ID: CWE-264
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local administrator to escalate privileges on the system.

The vulnerability exists due to insecure storage and permissions within certain system configurations and executable files, which leads to security restrictions bypass and privilege escalation.


Affected software

Cisco Adaptive Security Appliance (ASA)
Cisco Firewall Threat Defense (FTD)

How to mitigate CVE-2024-20370

Install updates from vendor's website.

Cisco Adaptive Security Appliance (ASA) - addressed in versions 7.2.9, 7.4.2, 7.4.2.1, 7.6.0, 9.17.1.45, 9.18.4.24, 9.18.4.29, 9.18.4.34, 9.18.4.40, 9.18.4.47, 9.19.1.31, 9.19.1.37, 9.20.2.21, 9.20.2.22, 9.20.3, 9.20.3.4, 9.20.3.7, 9.22.1.1
Cisco Firewall Threat Defense (FTD) - addressed in versions 7.2.9, 7.4.2, 7.4.2.1, 7.6.0, 9.17.1.45, 9.18.4.24, 9.18.4.29, 9.18.4.34, 9.18.4.40, 9.18.4.47, 9.19.1.31, 9.19.1.37, 9.20.2.21, 9.20.2.22, 9.20.3, 9.20.3.4, 9.20.3.7, 9.22.1.1

External References

Related Security Bulletins