Cisco fixed CVE-2020-3452 high-severity path traversal flaw in its firewalls that can be exploited by remote attackers to obtain sensitive files from the targeted system. The vulnerability impacts the web services interface of Ciscos Adaptive Security Appliance (ASA) software and Firepower Threat Defense (FTD) software. The first attempts to exploit the vulnerability were observed within hours after the disclosure of the flaw were observed. The availability online of PoC exploits for the vulnerability is increasing the risk of attacks on a large scale.”]
Source: https://securityaffairs.co/wordpress/106313/hacking/cisco-cve-2020-3452-flaw.html