Lucene search

K
cveCiscoCVE-2014-0659
HistoryJan 12, 2014 - 6:34 p.m.

CVE-2014-0659

2014-01-1218:34:55
CWE-78
cisco
web.nvd.nist.gov
39
cisco
wap4410n
wrvs4400n
rvs4000
remote code execution
tcp port
cve-2014-0659

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

Low

EPSS

0.332

Percentile

97.1%

The Cisco WAP4410N access point with firmware through 2.0.6.1, WRVS4400N router with firmware 1.x through 1.1.13 and 2.x through 2.0.2.1, and RVS4000 router with firmware through 2.0.3.2 allow remote attackers to read credential and configuration data, and execute arbitrary commands, via requests to the test interface on TCP port 32764, aka Bug IDs CSCum37566, CSCum43693, CSCum43700, and CSCum43685.

Affected configurations

Nvd
Node
ciscorvs4000_firmwareRange2.0.3.2
OR
ciscorvs4000_firmwareMatch1.3.2.0
OR
ciscorvs4000_firmwareMatch1.3.3.5
OR
ciscorvs4000_firmwareMatch2.0.0.3
OR
ciscorvs4000_firmwareMatch2.0.2.7
AND
ciscorvs4000Match-
Node
ciscowrvs4400n_firmwareMatch1.1.03
OR
ciscowrvs4400n_firmwareMatch1.1.13
OR
ciscowrvs4400n_firmwareMatch2.0.1.3
OR
ciscowrvs4400n_firmwareMatch2.0.2.1
AND
ciscowrvs4400nMatch-
Node
ciscowap4410n_firmwareRange2.0.6.1
OR
ciscowap4410n_firmwareMatch2.0.2.1
OR
ciscowap4410n_firmwareMatch2.0.3.3
OR
ciscowap4410n_firmwareMatch2.0.4.2
AND
ciscowap4410nMatch-
VendorProductVersionCPE
ciscorvs4000_firmware*cpe:2.3:o:cisco:rvs4000_firmware:*:*:*:*:*:*:*:*
ciscorvs4000_firmware1.3.2.0cpe:2.3:o:cisco:rvs4000_firmware:1.3.2.0:*:*:*:*:*:*:*
ciscorvs4000_firmware1.3.3.5cpe:2.3:o:cisco:rvs4000_firmware:1.3.3.5:*:*:*:*:*:*:*
ciscorvs4000_firmware2.0.0.3cpe:2.3:o:cisco:rvs4000_firmware:2.0.0.3:*:*:*:*:*:*:*
ciscorvs4000_firmware2.0.2.7cpe:2.3:o:cisco:rvs4000_firmware:2.0.2.7:*:*:*:*:*:*:*
ciscorvs4000-cpe:2.3:h:cisco:rvs4000:-:*:*:*:*:*:*:*
ciscowrvs4400n_firmware1.1.03cpe:2.3:o:cisco:wrvs4400n_firmware:1.1.03:*:*:*:*:*:*:*
ciscowrvs4400n_firmware1.1.13cpe:2.3:o:cisco:wrvs4400n_firmware:1.1.13:*:*:*:*:*:*:*
ciscowrvs4400n_firmware2.0.1.3cpe:2.3:o:cisco:wrvs4400n_firmware:2.0.1.3:*:*:*:*:*:*:*
ciscowrvs4400n_firmware2.0.2.1cpe:2.3:o:cisco:wrvs4400n_firmware:2.0.2.1:*:*:*:*:*:*:*
Rows per page:
1-10 of 161

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

Low

EPSS

0.332

Percentile

97.1%