---
cve: "CVE-2026-20330"
severity: "CRITICAL"
cvss: 9.9
epss: "0.3%"
vendor: "Cisco"
kev: false
exploited: false
published: "2026-09-16 20:17:23"
tags: [cve, security, critical]
source: tsecurity.de CVE-Dossier
exported: "2026-09-20T20:06:30+02:00"
---

# CVE-2026-20330

> 9.9 CRITICAL

## Beschreibung

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Adaptive Security Appliance Software, Cisco Secure Firewall Threat Defense Software and Cisco Secure Firewall Management Center Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. &nbsp;

The vulnerabilities tracked by CVE-2026-20330 are related to improper neutralization issues that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-707.

## CVSS-Vektor

```
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Netzwerk | bad |
| AC Komplexität | Gering | bad |
| PR Privilegien | Gering | warn |
| UI Interaktion | Keine | bad |
| S Scope | Verändert | bad |
| C Vertraulichkeit | Hoch | bad |
| I Integrität | Hoch | bad |
| A Verfügbarkeit | Hoch | bad |

## Schwachstellen-Klasse

- **CWE-707** — Improper Neutralization
  The product does not ensure or incorrectly ensures that structured messages or data are well-formed and that certain security properties are met before being read from an upstream component or sent to a downstream component.

## Angriffsmuster (CAPEC)

- [CAPEC-3 — Using Leading 'Ghost' Character Sequences to Bypass Input Filters](https://capec.mitre.org/data/definitions/3.html) _(Severity: Medium)_
- [CAPEC-43 — Exploiting Multiple Input Interpretation Layers](https://capec.mitre.org/data/definitions/43.html) _(Severity: High)_
- [CAPEC-250 — XML Injection](https://capec.mitre.org/data/definitions/250.html)
- [CAPEC-276 — Inter-component Protocol Manipulation](https://capec.mitre.org/data/definitions/276.html)
- [CAPEC-277 — Data Interchange Protocol Manipulation](https://capec.mitre.org/data/definitions/277.html)
- [CAPEC-278 — Web Services Protocol Manipulation](https://capec.mitre.org/data/definitions/278.html)
- [CAPEC-279 — SOAP Manipulation](https://capec.mitre.org/data/definitions/279.html) _(Severity: High)_
- [CAPEC-468 — Generic Cross-Browser Cross-Domain Theft](https://capec.mitre.org/data/definitions/468.html) _(Severity: Medium)_

## Referenzen

- <https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-asaftdfmc-uvpPROhN>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2026-20330) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
