A vulnerability in the authentication and authorization flows for VPN connections in Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to establish a connection as a different user.
This vulnerability is due to a flaw in the authorization verifications during the VPN authentication flow. An attacker could exploit this vulnerability by sending a crafted packet during a VPN authentication. The attacker must have valid credentials to establish a VPN connection. A successful exploit could allow the attacker to establish a VPN connection with access privileges from a different user.
Metrics
Affected Vendors & Products
References
History
Tue, 11 Aug 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cisco secure Firewall Threat Defense
|
|
| CPEs | cpe:2.3:a:cisco:firepower_threat_defense:6.1.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.1.0.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.1.0.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.1.0.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.1.0.6:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.1.0.7:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.1.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.0.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.0.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.0.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.0.6:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.2.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.2.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.2.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.2.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.2.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.10:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.11:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.12:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.13:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.14:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.15:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.16:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.17:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.18:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.6:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.7:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.8:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3.9:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.2.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.3.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.3.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.3.0.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.3.0.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.3.0.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.3.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.10:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.11:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.12:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.13:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.14:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.6:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.7:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.8:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0.9:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.4.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.5.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.5.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.5.0.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.5.0.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.5.0.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.5.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.6.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.6.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.6.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.6.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.6.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.6.5.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.6.5.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.6.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.7.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.7.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.7.0.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:6.7.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:7.0.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:7.0.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:7.0.1.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:7.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:7.1.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:7.1.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:firepower_threat_defense:7.1.0:*:*:*:*:*:*:* |
cpe:2.3:a:cisco:secure_firewall_threat_defense:6.1.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.1.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.1.0.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.1.0.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.1.0.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.1.0.6:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.1.0.7:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.1.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.0.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.0.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.0.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.0.6:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.2.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.2.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.2.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.2.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.2.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.10:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.11:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.12:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.13:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.14:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.15:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.16:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.17:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.18:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.6:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.7:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.8:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3.9:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.2.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.3.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.3.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.3.0.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.3.0.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.3.0.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.3.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.10:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.11:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.12:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.13:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.14:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.6:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.7:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.8:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0.9:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.4.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.5.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.5.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.5.0.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.5.0.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.5.0.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.5.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.6.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.6.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.6.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.6.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.6.4:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.6.5.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.6.5.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.6.5:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.7.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.7.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.7.0.3:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:6.7.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.0:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.1.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:7.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:7.1.0.1:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:7.1.0.2:*:*:*:*:*:*:* cpe:2.3:a:cisco:secure_firewall_threat_defense:7.1.0:*:*:*:*:*:*:* |
| Vendors & Products |
Cisco firepower Threat Defense
|
Cisco secure Firewall Threat Defense
|
Status: PUBLISHED
Assigner: cisco
Published: 2022-11-10T17:36:54.157Z
Updated: 2024-08-03T02:31:58.644Z
Reserved: 2021-11-02T13:28:29.191Z
Link: CVE-2022-20928
No data.
Status : Modified
Published: 2022-11-15T21:15:32.720
Modified: 2026-08-11T19:33:44.513
Link: CVE-2022-20928
No data.
ReportizFlow