Security Advisory Desk
highQCS priority 100/100Cisco

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Denial of Service Vulnerability

A flaw in Cisco Secure Firewall ASA and Threat Defense software's SSL VPN function allows attackers to crash devices remotely, causing denial of service. Attackers send crafted HTTP requests to trigger reloads, disrupting network security. Cisco has released updates to fix this issue, but no temporary workaround exists.

Published 16/9/2026, 4:05:42 pmVerified 17/9/2026, 11:44:01 pmRevision 2
Cisco high network security advisory visual

In plain language

What this advisory means

A flaw in Cisco Secure Firewall ASA and Threat Defense software's SSL VPN function allows attackers to crash devices remotely, causing denial of service. Attackers send crafted HTTP requests to trigger reloads, disrupting network security. Cisco has released updates to fix this issue, but no temporary workaround exists.

Technical explanation

How the issue affects the environment

The vulnerability in Cisco Secure Firewall Adaptive Security Appliance (ASA) and Threat Defense (FTD) software affects the Remote Access SSL VPN service. It arises from insufficient HTTP request error validation, enabling unauthenticated remote attackers to send crafted HTTP requests that cause the devices to reload unexpectedly. This leads to a denial of service by interrupting the firewall's operation. The affected configurations include IKEv2 Remote Access VPN, SSL VPN, and Zero Trust Network Access features that enable SSL listening sockets. Cisco has released software updates in specific versions to address this issue; no workarounds mitigate the risk.

Operational impact

Why teams should care

Exploitation results in network security devices unexpectedly rebooting, leading to denial of service. This disrupts firewall protection, potentially exposing networks to additional threats and causing interruptions in business operations relying on secure VPN access channels.

Immediate action

Upgrade to the Cisco software releases that include the fix for this vulnerability as detailed in the advisory to remediate the issue. Cisco strongly recommends this upgrade since no workarounds exist.

Affected and fixed releases

Affected versionsAll ASA Software releases prior to 9.16.4.103, 9.18 versions prior to 9.18.4.94, 9.20 prior to 9.20.4.49, 9.22 prior to 9.22.3.26, 9.23 prior to 9.23.1.47, 9.24 prior to 9.24.1.26, FTD Software releases prior to 7.0.10, 7.2.12, 7.4.8, 7.6.6, 7.7.13, 10.0.2
Fixed versionsASA Software 9.16.4.103 and later for 9.16 line; 9.18.4.94 and later for 9.18 line; 9.20.4.49 and later for 9.20 line; 9.22.3.26 and later for 9.22 line; 9.23.1.47 and later for 9.

Temporary risk reduction

Cisco reports no workarounds address this vulnerability; upgrading the software is the only effective remediation.

Evidence and validation checklist

  • Official Cisco Security Advisory (cisco-sa-asaftd-vpn-dos-dzv4mQFF)
  • Cisco CVE entry for CVE-2026-20349
  • Cisco software fixed release tables
  • Cisco PSIRT confirmation of active exploitation

Authoritative reference

Cisco PSIRT Advisories

QCS detected and normalized this record from the official source. Vendor guidance remains authoritative.

Open source