Home

Description

A vulnerability in the authentication service feature of Cisco AsyncOS Software for Cisco Secure Web Appliance could allow an unauthenticated, remote attacker to bypass authentication policy requirements. This vulnerability is due to improper validation of user-supplied authentication input in HTTP requests. An attacker could exploit this vulnerability by sending HTTP requests that contain specific authentication requests to an affected device. A successful exploit could allow the attacker to bypass policy enforcement on the device. There is no direct impact to the Cisco Secure Web Appliance. However, as a result of exploiting this vulnerability, an attacker could send HTTP requests that should be restricted through the device.

PUBLISHED Reserved 2025-10-08 | Published 2026-04-15 | Updated 2026-04-16 | Assigner cisco




MEDIUM: 5.3CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

Problem types

Authentication Bypass by Primary Weakness

Product status

Default status
unknown

11.8.0-453
affected

12.5.3-002
affected

12.0.3-007
affected

12.0.3-005
affected

14.1.0-032
affected

14.1.0-047
affected

14.1.0-041
affected

12.0.4-002
affected

14.0.2-012
affected

11.8.0-414
affected

12.0.1-268
affected

11.8.1-023
affected

11.8.3-021
affected

11.8.3-018
affected

12.5.1-011
affected

11.8.4-004
affected

12.5.2-007
affected

12.5.2-011
affected

14.5.0-498
affected

12.5.4-005
affected

12.5.4-011
affected

12.0.5-011
affected

14.0.3-014
affected

12.5.5-004
affected

12.5.5-005
affected

12.5.5-008
affected

14.0.4-005
affected

14.5.1-008
affected

14.5.1-016
affected

15.0.0-355
affected

15.0.0-322
affected

12.5.6-008
affected

15.1.0-287
affected

14.5.2-011
affected

15.2.0-116
affected

14.0.5-007
affected

15.2.0-164
affected

14.5.1-510
affected

12.0.2-012
affected

12.0.2-004
affected

14.5.1-607
affected

14.5.3-033
affected

15.0.1-004
affected

15.2.1-011
affected

14.5.0-673
affected

14.5.0-537
affected

12.0.1-334
affected

14.0.1-503
affected

14.0.1-053
affected

11.8.0-429
affected

14.0.1-040
affected

14.0.1-014
affected

12.5.1-043
affected

15.2.2-009
affected

15.2.3-007
affected

15.2.4-022
affected

15.2.5-011
affected

15.2.5-013
affected

14.6.0-108
affected

References

sec.cloudapps.cisco.com/...cisco-sa-wsa-auth-bypass-6YZkTQhd (cisco-sa-wsa-auth-bypass-6YZkTQhd)

cve.org (CVE-2026-20152)

nvd.nist.gov (CVE-2026-20152)

Download JSON