Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Rv130_firmware
(Cisco)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 59 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2022-07-22 | CVE-2022-20904 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition. These vulnerabilities are due to insufficient validation of user fields within incoming HTTP packets. An attacker could exploit these vulnerabilities by sending a crafted request... | Rv110w_firmware, Rv130_firmware, Rv130w_firmware, Rv215w_firmware | 7.2 | ||
2022-07-22 | CVE-2022-20910 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition. These vulnerabilities are due to insufficient validation of user fields within incoming HTTP packets. An attacker could exploit these vulnerabilities by sending a crafted request... | Application_extension_platform, Rv110w_firmware, Rv130_firmware, Rv130w_firmware, Rv215w_firmware | 7.2 | ||
2022-07-22 | CVE-2022-20911 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition. These vulnerabilities are due to insufficient validation of user fields within incoming HTTP packets. An attacker could exploit these vulnerabilities by sending a crafted request... | Rv110w_firmware, Rv130_firmware, Rv130w_firmware, Rv215w_firmware | 7.2 | ||
2022-07-22 | CVE-2022-20912 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition. These vulnerabilities are due to insufficient validation of user fields within incoming HTTP packets. An attacker could exploit these vulnerabilities by sending a crafted request... | Rv110w_firmware, Rv130_firmware, Rv130w_firmware, Rv215w_firmware | 7.2 | ||
2022-09-08 | CVE-2022-20923 | A vulnerability in the IPSec VPN Server authentication functionality of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an unauthenticated, remote attacker to bypass authentication controls and access the IPSec VPN network. This vulnerability is due to the improper implementation of the password validation algorithm. An attacker could exploit this vulnerability by logging in to the VPN from an affected device with crafted credentials. A successful exploit could... | Rv110w_firmware, Rv130_firmware, Rv130w_firmware, Rv215w_firmware | 9.8 | ||
2020-06-18 | CVE-2020-3269 | Multiple vulnerabilities in the web-based management interface of Cisco RV110W, RV130, RV130W, and RV215W Series Routers could allow an authenticated, remote attacker with administrative privileges to execute arbitrary commands. For more information about these vulnerabilities, see the Details section of this advisory. | Rv110w_firmware, Rv130_firmware, Rv130w_firmware, Rv215w_firmware | 7.2 | ||
2020-07-16 | CVE-2020-3145 | Multiple vulnerabilities in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction VPN Router, and RV215W Wireless-N VPN Router could allow an authenticated, remote attacker to execute arbitrary code on an affected device. The vulnerabilities are due to improper validation of user-supplied data in the web-based management interface. An attacker could exploit these vulnerabilities by sending malicious HTTP requests to... | Rv110w_firmware, Rv130_firmware, Rv130w_firmware, Rv215w_firmware | N/A | ||
2020-07-16 | CVE-2020-3144 | A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction VPN Router, and RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary commands with administrative commands on an affected device. The vulnerability is due to improper session management on affected devices. An attacker could exploit this vulnerability by sending a crafted... | Rv110w_firmware, Rv130_firmware, Rv130w_firmware, Rv215w_firmware | N/A | ||
2020-07-16 | CVE-2020-3146 | Multiple vulnerabilities in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction VPN Router, and RV215W Wireless-N VPN Router could allow an authenticated, remote attacker to execute arbitrary code on an affected device. The vulnerabilities are due to improper validation of user-supplied data in the web-based management interface. An attacker could exploit these vulnerabilities by sending malicious HTTP requests to... | Rv110w_wireless\-N_vpn_firewall_firmware, Rv130_firmware, Rv130w_firmware, Rv215w_firmware | N/A | ||
2020-06-18 | CVE-2020-3268 | Multiple vulnerabilities in the web-based management interface of Cisco RV110W, RV130, RV130W, and RV215W Series Routers could allow an authenticated, remote attacker with administrative privileges to execute arbitrary commands. For more information about these vulnerabilities, see the Details section of this advisory. | Rv110w_firmware, Rv130_firmware, Rv130w_firmware, Rv215w_firmware | N/A |