Attackers are exploiting Cisco ASA/FTD flaw in search for sensitive data


An unauthenticated file read vulnerability (CVE-2020-3452) affecting Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) software is being exploited by attackers in the wild


An unauthenticated file read vulnerability (CVE-2020-3452) affecting Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) software is being exploited by attackers in the wild. For the moment, it seems that it is being used just to read LUA source files, but it can be used to view files that may contain information such as WebVPN configuration, bookmarks, web cookies, partial web content, and HTTP URLs. There’s a proof of concept doing the rounds … More →

The post Attackers are exploiting Cisco ASA/FTD flaw in search for sensitive data appeared first on Help Net Security.


Read The Original Article Here

Leave a Reply

Your email address will not be published. Required fields are marked *

Want FREE UNLIMITED ACCESS?

free Access to all content

our exclusive human error newsletter

we make a 10p donation to rock2recovery
for every signup!

This website uses cookies to ensure you get the best experience on our website.

contact THE HUMAN ERROR

For further information on how The Human Error can help you. Fill out some details below, or give us a call.



Tel: 03300 417126

YOU HAVE

YOU NEED

SHINE A LIGHT ON ALL THREATS.
See All The Gaps.
ALERTS IN SECONDS.

Features:

70,000 Thoughts a day.
We Make Mistakes.