Cisco Adaptive Security Applia... Note

Cisco Adaptive Security Appliance and Firepower Threat Defense Software Persistent Local Code Execution Vulnerability

A vulnerability in Cisco ASA and FTD software allows authenticated local attackers to execute code with root-level privileges by exploiting improper file validation. The attacker can exploit this by copying a crafted file to the device's file system. The injected code can persist across reboots, leading to potential system behavior alterations. This vulnerability has been assigned a High Security Impact Rating. Cisco has released software updates to address this vulnerability, and there are no workarounds available. The advisory is available at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-persist-rce-FLsNXF4h. Additional information is provided in Cisco Event Response: Attacks Against Cisco Firewall Platforms. The Common Vulnerabilities and Exposures (CVE) number for this vulnerability is CVE-2024-20359.