Denial of Service Vulnerability in Cisco Secure Firewall Adaptive Security Appliance Software
CVE-2026-20082
8.6HIGH
What is CVE-2026-20082?
This vulnerability arises from improper management of incoming TCP connections on Cisco's Secure Firewall ASA Software, specifically during a TCP SYN flood attack. By exploiting this flaw, an attacker can send a carefully crafted traffic stream, preventing the establishment of all incoming TCP connections, including those necessary for remote management access and Remote Access VPN connections. Consequently, this leads to a denial of service condition, affecting all TCP-based network protocols reliant on these connections.
Affected Version(s)
Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.20.4.14