This week highlights a critical vendor-specific vulnerability: a deserialization flaw in the License Servlet of Fortra’s GoAnywhere MFT. By forging a license response signature, an attacker can trigger deserialization of arbitrary objects, potentially leading to command injection.
Key Findings
- Cisco (CVE-2025-20333, CVE-2025-20362, CVE-2025-20363): Multiple vulnerabilities that could allow attackers to exploit unsafe deserialization and input validation flaws. Successful exploitation may result in arbitrary code execution, privilege escalation, or command injection on affected systems.
Impact
Cisco (CVE-2025-20333, CVE-2025-20362, CVE-2025-20363): Exploitation enables attackers to escalate privileges or achieve remote code execution via command injection.
| Ruleset | Rule ID | Legacy Rule ID | Description | Previous Action | New Action | Comments |
|---|---|---|---|---|---|---|
| Cloudflare Managed Ruleset | a1bef4ada0b146d2862cad439ee0ab84 | 100788 | Cisco Secure Firewall Adaptive Security Appliance – Remote Code Execution – CVE:CVE-2025-20333, CVE:CVE-2025-20362, CVE:CVE-2025-20363 | N/A | Disabled | This is a New Detection |
| Cloudflare Managed Ruleset | 51de6ce6596a40eb8200452ad30f768e | 100788A | Cisco Secure Firewall Adaptive Security Appliance – Remote Code Execution – CVE:CVE-2025-20333, CVE:CVE-2025-20362, CVE:CVE-2025-20363 | N/A | Disabled | This is a New Detection |
Source: Cloudflare
Latest Posts
- (Updated) Microsoft Teams: Private chat for organizers and presenters in structured meetings, webinars, and town halls [MC1188222]
![(Updated) Microsoft Teams: Private chat for organizers and presenters in structured meetings, webinars, and town halls [MC1188222] 2 pexels steve 13845237](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- Sales in Microsoft 365 Copilot – Engage customers across multiple channels (web, voice, sms & email) [MC1410324]
![Sales in Microsoft 365 Copilot - Engage customers across multiple channels (web, voice, sms & email) [MC1410324] 3 pexels googledeepmind 25626589](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- (Updated) Viva Learning: Academy support on mobile [MC1330883]
![(Updated) Viva Learning: Academy support on mobile [MC1330883] 4 pexels harrisonhaines 3536511](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- (Updated) Automatic recording and transcription for Teams Call Queues [MC1401299]
![(Updated) Automatic recording and transcription for Teams Call Queues [MC1401299] 5 pexels marina zasorina 7635008](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)

![(Updated) Microsoft Teams: Private chat for organizers and presenters in structured meetings, webinars, and town halls [MC1188222] 2 pexels steve 13845237](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-steve-13845237-150x150.webp)
![Sales in Microsoft 365 Copilot - Engage customers across multiple channels (web, voice, sms & email) [MC1410324] 3 pexels googledeepmind 25626589](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-googledeepmind-25626589-150x150.webp)
![(Updated) Viva Learning: Academy support on mobile [MC1330883] 4 pexels harrisonhaines 3536511](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-harrisonhaines-3536511-150x150.webp)
![(Updated) Automatic recording and transcription for Teams Call Queues [MC1401299] 5 pexels marina zasorina 7635008](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-marina-zasorina-7635008-150x150.webp)
