CVE-2022-20828 is a high-severity vulnerability affecting the CLI parser of Cisco FirePOWER Software for Adaptive Security Appliance (ASA) FirePOWER modules. It allows an authenticated, remote attacker with administrative access to the Cisco ASA to execute arbitrary commands as root on the underlying operating system due to improper handling of command parameters. The vulnerability has a CVSS score of 7.2 (High) and an EPSS score indicating a higher-than-average likelihood of exploitation, with a FAUCET Risk Score of 98/100. While not actively exploited in the wild (KEV: No), a Metasploit module exists, and it has garnered community discussion and media coverage, suggesting awareness and potential for future exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 6.2.3.19CPE matchmatch criteria | cpe:2.3:a:cisco:asa_firepower:*:*:*:*:*:*:*:* | ||
>= 6.3.0, < 6.4.0.15CPE matchmatch criteria | cpe:2.3:a:cisco:asa_firepower:*:*:*:*:*:*:*:* | ||
>= 6.5.0, < 6.6.7CPE matchmatch criteria | cpe:2.3:a:cisco:asa_firepower:*:*:*:*:*:*:*:* | ||
>= 6.7.0, < 7.0.2.1CPE matchmatch criteria | cpe:2.3:a:cisco:asa_firepower:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.3 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.