[CVE-2025-20363] A major security vulnerability (CVE-2025-20363, CVSS: 9.0) exists in the Web services of Cisco Secure Firewall Adaptive Security Appliance (ASA), Cisco Secure Firewall Threat Defense (FTD) Software, Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software. The vulnerability is due to improper validation of user input in HTTP requests. An attacker can send a specially crafted HTTP request to the Web service of the affected device to execute arbitrary code as root, potentially leading to a denial of service on the affected device.