CVE-2026-20333
Cisco Secure Adaptive Security Appliance Software, Secure Firewall Threat Defense Software and Secure Firewall Management Center Software Hardening Release - Incorrect Comparison Vulnerabilities
Description
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Adaptive Security Appliance Software, Cisco Secure Firewall Threat Defense Software and Cisco Secure Firewall Management Center Software engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20333 are related to incorrect comparison conditions that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-697.
In plain language
AI Act nowA serious flaw affects Cisco Secure Firewall ASA, FTD, and FMC software; businesses using these network-reachable systems should act now because a public exploit is available.
CVE-2026-20333 is a CVSS 8.8 incorrect-comparison vulnerability (CWE-697) in Cisco Secure Firewall ASA Software, FTD Software, and FMC that a low-privileged network attacker may use to compromise confidentiality, integrity, and availability.
What to do now
- Check whether you run Cisco Secure Firewall ASA Software, Cisco Secure Firewall Threat Defense Software, or Cisco Secure Firewall Management Center Software, and identify every internet-reachable management system.
- No fixed version has been published in the provided findings; ask Cisco or your managed IT provider for the vendor's remediation release and deployment timeline.
- Until a fix is available, limit management access to trusted administrator networks, remove unnecessary low-level accounts, and review administrator activity for unexpected changes.
CVSS Vector Breakdown
AV:NAttack VectorAC:LAttack ComplexityPR:LPrivileges RequiredUI:NUser InteractionS:UScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Exploitability
Exploit details including PoC links, Metasploit modules, and scanner templates are available after registration.
View exploit detailsReferences
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2026-20333 and every CVE in our database. Create a free account — no credit card required.
Create Free Account