A vulnerability in the SSL VPN feature for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to a logic error in memory management when the device is handling SSL VPN connections. An attacker could exploit this vulnerability by sending crafted SSL/TLS packets to the SSL VPN server of the affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.
Conclusion & alert: CVE-2024-20402 is rated Moderate Risk (60.9/100): CVSS High severity, with medium exploitation likelihood (EPSS 0.84%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2025-12-01 | 0.33% | 0.84% | +0.51% |
| 2 | 2025-11-21 | 0.42% | 0.33% | -0.09% |
| 3 | 2025-11-18 | — | 0.42% | — |
Full EPSS history (12 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 8.6 | 3.1 | HIGH |
|
3.9 | 4.0 | [email protected] |
| 8.6 | 3.1 | HIGH |
|
3.9 | 4.0 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| cisco | adaptive_security_appliance_software | 9.8.1 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.1:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.1.5 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.1.5:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.1.7 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.1.7:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.2 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.2:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.2.8 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.2.8:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.2.14 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.2.14:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.2.15 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.2.15:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.2.17 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.2.17:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.2.20 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.2.20:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.2.24 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.2.24:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.2.26 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.2.26:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.2.28 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.2.28:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.2.33 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.2.33:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.2.35 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.2.35:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.2.38 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.2.38:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.2.45 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.2.45:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.3 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.3:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.3.8 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.3.8:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.3.11 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.3.11:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.3.14 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.3.14:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.3.16 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.3.16:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.3.18 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.3.18:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.3.21 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.3.21:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.3.26 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.3.26:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.3.29 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.3.29:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.3 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.3:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.7 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.7:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.8 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.8:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.10 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.10:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.12 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.12:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.15 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.15:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.17 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.17:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.20 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.20:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.22 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.22:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.25 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.25:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.26 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.26:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.29 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.29:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.32 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.32:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.33 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.33:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.34 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.34:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.35 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.35:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.39 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.39:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.40 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.40:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.41 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.41:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.43 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.43:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.44 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.44:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.45 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.45:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.46 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.46:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.8.4.48 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.8.4.48:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.1 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.1:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.1.2 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.1.2:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.1.3 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.1.3:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.2 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.2:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.2.1 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.2.1:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.2.4 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.2.4:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.2.5 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.2.5:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.2.9 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.2.9:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.3 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.3:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.3.2 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.3.2:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.3.7 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.3.7:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.3.9 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.3.9:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.3.12 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.3.12:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.2 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.2:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.4 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.4:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.7 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.7:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.8 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.8:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.10 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.10:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.13 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.13:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.18 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.18:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.24 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.24:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.26 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.26:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.29 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.29:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.30 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.30:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.35 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.35:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.37 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.37:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.38 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.38:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.39 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.39:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 9.12.4.40 | cpe:2.3:o:cisco:adaptive_security_appliance_software:9.12.4.40:*:*:*:*:*:*:* |