Skip to content

Defense Digests

Dataprise Defense Digest: Cisco ASA 5500-X Series Vulnerabilities

Dataprise Defense Digest 550x550 square 81b9c004fda6a6de80ab2a0e7f7c7938 46aw13uh8spc

Table of content

Vulnerability Number: CVE-2025-20333, CVE-2025-20362, CVE-2025-20363

Severity Level: Critical

Executive Summary

Cisco has identified new activity targeting ASA 5500-X Series devices. Three CVEs have been released in connection with this event, which could allow attackers to implant malware, execute commands, and potentially exfiltrate data from the compromised devices.

Details

Cisco ASA 5500-X Series devices are actively being targeted by threat actors exploiting newly disclosed vulnerabilities. Cisco has released three CVEs—CVE-2025-20333, CVE-2025-20362, and CVE-2025-20363—addressing these issues. Associated Snort Rules 65340 and 46897 are available to detect exploitation attempts.

Attackers may leverage these vulnerabilities to gain unauthorized access, execute arbitrary code, or disrupt services. Cisco is actively monitoring and has released security advisories detailing recommended patches and detection methods.

Impact

Successful exploitation of these vulnerabilities could lead to malware injection, remote code execution, system compromise, and potential exfiltration of data or data loss. Threat actors may also employ anti-forensics measures to destroy evidence.

Mitigation Strategies

  1. Update affected devices to the latest fixed software and review Cisco security advisories,
  2. Check for signs of compromise on ASA 5500-X Series devices.
  3. Follow CISA’s recommended steps.

Important Note: Follow CISA’s steps exactly. Any deviation may trigger anti-forensics measures that destroy evidence:

  • Do NOT use the ‘tab’ autocomplete (hooked to crash devices)
  • Avoid unapproved remediation (like blocking IPs) without CISA guidance

Sources

Contributing Authors

  • Dallas Myers – Director, Cybersecurity Services, Dataprise

Recent Tweets

INSIGHTS

Learn about the latest threats and vulnerabilities with our D3 alerts.

Subscribe to get real-time notifications when a new Dataprise Defense Digest is published.