Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Adaptive Security Appliance (ASA) Software | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | None | https://github.com/Hudi233/CVE-2020-3580 | POC Details |
| 2 | Automated bulk IP or domain scanner for CVE 2020 3580. Cisco ASA and FTD XSS hunter. | https://github.com/adarshvs/CVE-2020-3580 | POC Details |
| 3 | Cisco ASA XSS CVE-2020-3580 | https://github.com/cruxN3T/CVE-2020-3580 | POC Details |
| 4 | Additional exploits for XSS in Cisco ASA devices discovered by PTSwarm | https://github.com/catatonicprime/CVE-2020-3580 | POC Details |
| 5 | Automated bulk IP scanner Cisco ASA and FTD XSS | https://github.com/imhunterand/CVE-2020-3580 | POC Details |
| 6 | Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software are vulnerable to cross-site scripting and could allow an unauthenticated, remote attacker to conduct attacks against a user of the web services interface of an affected device. The vulnerabilities are due to insufficient validation of user-supplied input by the web services interface of an affected device. An attacker could exploit these vulnerabilities by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or allow the attacker to access sensitive, browser-based information. Note: These vulnerabilities affect only specific AnyConnect and WebVPN configurations. For more information, see the reference links. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2020/CVE-2020-3580.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2020-3456 | 8.8 HIGH | Cisco FXOS Software Firepower Chassis Manager Cross-Site Request Forgery Vulnerability |
| CVE-2020-3373 | 8.6 HIGH | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software IP Fragme |
| CVE-2020-3528 | 8.6 HIGH | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software OSPFv2 Li |
| CVE-2020-3533 | 8.6 HIGH | Cisco Firepower Threat Defense Software SNMP Denial of Service Vulnerability |
| CVE-2020-3572 | 8.6 HIGH | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software SSL/TLS S |
| CVE-2020-3529 | 8.6 HIGH | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software SSL VPN D |
| CVE-2020-3514 | 8.2 HIGH | Cisco Firepower Threat Defense Software Multi-Instance Container Escape Vulnerability |
| CVE-2020-3410 | 8.1 HIGH | Cisco Firepower Management Center Software Common Access Card Authentication Bypass Vulner |
| CVE-2020-3555 | 6.8 MEDIUM | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software SIP Denia |
| CVE-2020-3581 | 6.1 MEDIUM | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Servi |
| CVE-2020-3582 | 6.1 MEDIUM | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Servi |
| CVE-2020-3583 | 6.1 MEDIUM | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Servi |
| CVE-2020-3599 | 6.1 MEDIUM | Cisco Adaptive Security Appliance Software Web-Based Management Interface Reflected Cross- |
| CVE-2020-3565 | 5.8 MEDIUM | Cisco Firepower Threat Defense Software TCP Intercept Bypass Vulnerability |
| CVE-2020-3578 | 5.3 MEDIUM | Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software WebVPN Po |
| CVE-2020-3585 | 5.3 MEDIUM | Cisco Firepower 1000 Series Bleichenbacher Attack Vulnerability |
| CVE-2020-3557 | 5.3 MEDIUM | Cisco Firepower Management Center Software Denial of Service Vulnerability |
| CVE-2020-3558 | 4.7 MEDIUM | Cisco Firepower Management Center Software Open Redirect Vulnerability |
| CVE-2020-3299 | Multiple Cisco Products SNORT HTTP Detection Engine File Policy Bypass Vulnerability | |
| CVE-2020-3549 | Cisco Firepower Management Center Software and Firepower Threat Defense Software sftunnel |
Showing top 20 of 40 CVEs. View all on vendor page → →
No comments yet