CVE-2020-3452: Cisco Adaptive Security Appliance (ASA)/Firepower Threat Defense (FTD) - Local File Inclusion
HoneyLabs honeypots recorded 17 probes matching CVE-2020-3452 from 6 distinct source IP addresses in the last 7 days. Severity is rated high.
This CVE is on CISA's Known Exploited Vulnerabilities list.
Request paths that identify it
- /+CSCOT+/oem-customization?app=AnyConnect&type=oem&platform=..&resource-type=..&name=%2bCSCOE%2b/portal_inc.lua
- /+CSCOT+/translation-table?type=mst&textdomain=/%2bCSCOE%2b/portal_inc.lua&default-language&lang=..
Addresses probing it
| Source IP | Probes | Network | Country |
|---|---|---|---|
| 93.123.109.214 | 12 | Techoff Srv Limited | Bulgaria |
| 45.79.2.183 | 1 | Akamai Connected Cloud | United States |
| 167.99.169.250 | 1 | DigitalOcean, LLC | United States |
| 165.232.60.75 | 1 | DigitalOcean, LLC | United States |
| 64.227.1.15 | 1 | DigitalOcean, LLC | United States |
| 206.189.73.130 | 1 | DigitalOcean, LLC | United States |
Networks it comes from
| ASN | Organisation | Probes | Source IPs |
|---|---|---|---|
| AS48090 | Techoff Srv Limited | 12 | 1 |
| AS14061 | DigitalOcean, LLC | 4 | 4 |
| AS63949 | Akamai Connected Cloud | 1 | 1 |
Captured requests
- /+CSCOT+/oem-customization?app=AnyConnect&type=oem&platform=..&resource-type=..&name=%2bCSCOE%2b/portal_inc.lua
- /+CSCOT+/translation-table?type=mst&textdomain=/%2bCSCOE%2b/portal_inc.lua&default-language&lang=../
- /+CSCOT+/oem-customization?app=AnyConnect&type=oem&platform=..&resource-type=..&name=%2BCSCOE%2B/portal_inc.lua
CVE report
CVE report
Open a specific CVE from the CVE tracker.