Vulnerability Advisory on Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router

by

Advisory ID: BGD-2019-0006

Version: 1.00

Probability: high

CVE ID: CVE-2019-1663

Damage: high

Publication date: 2019-03-11

Description: A vulnerability in the web-based management interface of the PRODUCT could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device.
The vulnerability is due to CAUSE.

Impact: A remote attacker could exploit this vulnerability to take control of an affected system.

Product(s) affected:

  • Vulnerable:
  • Cisco Small Business RV Series Routers 1.3.0.8
  • Cisco Small Business RV Series Routers 1.2.1.7
  • Cisco Small Business RV Series Routers 1.0.1.2
  • Cisco RV215W Wireless-N VPN Router 0
  • Cisco RV130W Wireless-N Multifunction VPN Router 0
  • Cisco RV110W Wireless-N VPN Firewall 0
  • Not Vulnerable:
  • Cisco Small Business RV Series Routers 1.3.1.1
  • Cisco Small Business RV Series Routers 1.2.2.1
  • Cisco Small Business RV Series Routers 1.0.3.45
  • Cisco RV215W Wireless-N VPN Router 1.3.1.1
  • Cisco RV130W Wireless-N Multifunction VPN Router 1.0.3.45
  • Cisco RV110W Wireless-N VPN Firewall 1.2.2.1

Platform(s) affected:

  • cisco RV110W Firmware
  • cisco RV110W Wireless-N VPN Firewall Firmware
  • cisco RV130W Firmware
  • cisco RV130W Wireless-N Multifunction VPN Router Firmware
  • cisco RV215W Firmware
  • cisco RV215W Wireless-N VPN Router Firmware

Mitigation: Administrators are advised to update the affected systems without delay.
Updates are available. Please see the references or vendor advisory for more information.

Reference URL’s:

Share