CVE-2022-20826
A vulnerability in the secure boot implementation of Cisco Secure Firewalls 3100 Series that are running Cisco Adaptive Security Appliance (ASA) Software or Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated attacker with physical access to the device to bypass the secure boot functionality. This vulnerability is due to a logic error in the boot process. An attacker could exploit this vulnerability by injecting malicious code into a specific memory location during the boot process of an affected device. A successful exploit could allow the attacker to execute persistent code at boot time and break the chain of trust.
EPSS 0.40% · 61.2th percentile
Risk Scores
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| cisco | adaptive_security_appliance_software | 9.18.1.3, 9.17.1.10, 9.17.1.9 |
| Cisco | Cisco Adaptive Security Appliance (ASA) Software | 9.18.1.3, 9.17.1.13, 9.18.1 |
| Cisco | Cisco Firepower Threat Defense Software | 7.1.0, 7.2.0, 7.2.0.1 |
| cisco | firepower_threat_defense | 7.2.0.0, 7.2.0.1, 7.1.0.0 |
Exploit Intelligence
Timeline
- Nov 10, 2022 CVE Published
- Nov 16, 2022 EPSS Score
- Dec 29, 2022 EPSS Score
- Feb 10, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 24, 2023 EPSS Score
- May 6, 2023 EPSS Score
- Jun 18, 2023 EPSS Score
- Jul 31, 2023 EPSS Score
- Sep 12, 2023 EPSS Score
- Oct 24, 2023 EPSS Score
- Dec 6, 2023 EPSS Score
References
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-snmp-dos-qsqBNM6x advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fw3100-secure-boot-5M8mUh26 advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ssl-client-dos-cCrQPkA advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmcsfr-snmp-access-6gqgtJ4S advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asa-ftd-dap-dos-GhYZBxDU advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-dos-OwEunWJN advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-gre-dos-hmedHQPM advisory
- cisco-sa-fw3100-secure-boot-5M8mUh26 url
- https://nvd.nist.gov/vuln/detail/CVE-2022-20826 advisory