LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →
Home / Vulnerability Intelligence / CVE-2026-20082

CVE-2026-20082 - Vulnerability Analysis

HighCVSS: 8.6

Last Updated: March 5, 2026

Cisco Secure Firewall Adaptive Security Appliance - Denial of Service

Published: March 4, 2026Updated: March 5, 2026Remote Exploitable

Overview

Cisco Secure Firewall Adaptive Security Appliance (ASA) Software contains a denial of service vulnerability caused by improper handling of embryonic TCP connections under SYN flood attack, letting unauthenticated remote attackers drop incoming TCP SYN packets, exploit requires sending crafted traffic.

Severity & Score

Severity: High
CVSS Score: 8.6
EPSS Score: 10.6%(Probability of exploitation in next 30 days)

Impact

Attackers can cause denial of service by preventing all incoming TCP connections, including remote management and VPN access.

Mitigation

Update to the latest available version of Cisco Secure Firewall Adaptive Security Appliance Software.

Social Media Activity(2 posts)

Yazoul Alerts
Yazoul Alerts
@Matchbook3469
Mar 5, 2026

🟠 New security advisory: CVE-2026-20082 affects multiple systems. • Impact: Significant security breach potential • Risk: Unauthorized access or data exposure • Mitigation: Apply patches within 24-48 hours Full breakdown: https://yazoul.net/advisory/cve/cve-2026-20082 #Cybersecurity #VulnerabilityManagement #CyberSec

View original post
TheHackerWire
TheHackerWire
@thehackerwire
Mar 4, 2026

🟠 CVE-2026-20082 - High (8.6) A vulnerability in the handling of the embryonic connection limits in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to cause incoming TCP SYN packets to be dropped incorrectly. ... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-20082/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post

Details

CVE ID
CVE-2026-20082
Severity
High
CVSS Score
8.6
Type
denial_of_service
Status
unconfirmed
EPSS
10.6%
Social Posts
2

CWE

  • CWE-772

CVSS Metrics

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

EPSS Score

10.6%Probability of exploitation in the next 30 days