highKEV
CVE-2025-20362
Cisco ASA/FTD WebVPN unauthorized access to restricted URL endpoints - chained with CVE-2025-20333 for pre-auth RCE
- Severity
- high
- Affected product
- Cisco ASA/FTD WebVPN
- Affected versions
- Cisco ASA/FTD WebVPN all versions before the fix
- CISA KEV
- Listed as a known exploited vulnerability
- Added to NewScan
- 2026-08-06
- Detected by
- NewScan — free, self-hosted
How NewScan reports it
APPLIANCE FINGERPRINT
NewScan fingerprints the Cisco ASA/FTD WebVPN appliance and reports this CVE when the detected version falls inside the affected range below.
References
Scan for this yourself — local, in-band scanning is free.
Get NewScan (FREE) →