Vulnerabilities > Cisco > Firepower Services Software FOR ASA > High

DATE CVE VULNERABILITY TITLE RISK
2022-11-15 CVE-2022-20918 Improper Authentication vulnerability in Cisco products
A vulnerability in the Simple Network Management Protocol (SNMP) access controls for Cisco FirePOWER Software for Adaptive Security Appliance (ASA) FirePOWER module, Cisco Firepower Management Center (FMC) Software, and Cisco Next-Generation Intrusion Prevention System (NGIPS) Software could allow an unauthenticated, remote attacker to perform an SNMP GET request using a default credential. This vulnerability is due to the presence of a default credential for SNMP version 1 (SNMPv1) and SNMP version 2 (SNMPv2).
network
low complexity
cisco CWE-287
7.5