Cisco has warned customers that hackers continue to target Cisco ASA and Firepower Appliance products by exploiting the CVE-2018-0296 flaw. The vulnerability was patched more than a year ago, in early June 2018, since its disclosure many proof-of-concept (PoC) exploits have been released online. The root cause of the issue is the lack of proper input validation of the HTTP URL, it could be exploited by an attacker by sending a specially-crafted HTTP request to a vulnerable device.”]
Source: https://securityaffairs.co/wordpress/95460/hacking/cve-2018-0296-cisco-asa-attacks.html

