Feed/CVE-2020-3580
CVE-2020-3580CISA KEV: Actively Exploited

Cisco ASA and FTD Cross-Site Scripting (XSS) Vulnerability

Published Nov 3, 2021·Updated Nov 3, 2021

NVD Description

Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) contain an insufficient input validation vulnerability for user-supplied input by the web services interface. Successful exploitation could allow an attacker to perform cross-site scripting (XSS) in the context of the interface or access sensitive browser-based information.

Public Exploits & PoCs4 found

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free