Lucene search

K
cve0dayCVE 0dayCVE0DAY:6CEFF93A700526365C2AFC4169906830
HistoryMar 07, 2019 - 1:55 p.m.

Cisco Routers CVE-2019-1663 Remote Command Execution

2019-03-0713:55:18
CVE 0day
www.cve0day.com
226

EPSS

0.969

Percentile

99.8%

Description

A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device.

The vulnerability is due to improper validation of user-supplied data in the web-based management interface. An attacker could exploit this vulnerability by sending malicious HTTP requests to a targeted device. A successful exploit could allow the attacker to execute arbitrary code on the underlying operating system of the affected device as a high-privilege user.

Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.

The following Cisco products are affected:

Cisco RV110W Wireless-N VPN Firewall
Cisco RV130W Wireless-N Multifunction VPN Router
Cisco RV215W Wireless-N VPN Router

Cisco Routers CVE-2019-1663 Remote Command Executionζœ€ε…ˆε‡ΊηŽ°εœ¨CVE 0day。