1 Oct 2025
Zero-day vulnerabilities (CVE-2025-20333 & CVE-2025-20362) in Cisco Adaptive Security Appliance (ASA) Software are being actively exploited by malicious actors to take over an affected system.
iPipeline is aware of the vulnerability and is actively working to follow the vendor’s recommended mitigation steps. We have not observed any indications that the vulnerability has been exploited.