Incorrect Calculation Vulnerability in Cisco Secure Adaptive Security Appliance
CVE-2026-20335

8.1HIGH

What is CVE-2026-20335?

Cisco has implemented a software hardening release for its Secure Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center products. This update addresses vulnerabilities stemming from incorrect calculation issues, categorized under CWE-682, which could potentially compromise the integrity and security of the affected software. The proactive steps taken by Cisco underline their commitment to enhancing security and ensuring the effectiveness of their product offerings.

Affected Version(s)

Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.16.1

Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.16.1.28

Cisco Secure Firewall Adaptive Security Appliance (ASA) Software 9.16.2

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • 👾

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

.