Geolocation Vulnerability in Cisco Secure Firewall Threat Defense Software
CVE-2025-20268

5.8MEDIUM

Key Information:

Vendor

Cisco

Vendor
CVE Published:
14 August 2025

Badges

👾 Exploit Exists

What is CVE-2025-20268?

A flaw in the Geolocation-Based Remote Access VPN feature of Cisco Secure Firewall Threat Defense Software presents a significant risk. Due to improper URL string parsing, an unauthenticated remote attacker may send specially crafted HTTP connections to the device, potentially bypassing critical geolocation policies. This vulnerability enables unauthorized access to restricted network areas, allowing connections that should otherwise have been denied based on the geographical location of the request.

Affected Version(s)

Cisco Firepower Threat Defense Software 7.7.0

References

CVSS V3.1

Score:
5.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • 👾

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-20268 : Geolocation Vulnerability in Cisco Secure Firewall Threat Defense Software