Geolocation Vulnerability in Cisco Secure Firewall Threat Defense Software
CVE-2025-20268
5.8MEDIUM
What is CVE-2025-20268?
A flaw in the Geolocation-Based Remote Access VPN feature of Cisco Secure Firewall Threat Defense Software presents a significant risk. Due to improper URL string parsing, an unauthenticated remote attacker may send specially crafted HTTP connections to the device, potentially bypassing critical geolocation policies. This vulnerability enables unauthorized access to restricted network areas, allowing connections that should otherwise have been denied based on the geographical location of the request.
Affected Version(s)
Cisco Firepower Threat Defense Software 7.7.0