high
CISA KEV
CVE-2024-20481
Cisco ASA and FTD Denial-of-Service Vulnerability
// Description
Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) contain a missing release of resource after effective lifetime vulnerability that could allow an unauthenticated, remote attacker to cause a denial-of-service (DoS) of the RAVPN service.
// Required action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Federal remediation due Nov 14, 2024 — past due
Advertisement