CVE-2016-1430: Input Validation
Published Aug 8, 2016
·Updated
Cisco RV180 and RV180W devices allow remote authenticated users to execute arbitrary commands as root via a crafted HTTP request, aka Bug ID CSCuz48592.
Affected Software
4 affected components
Cisco Rv180 Vpn Router Firmware
Cisco Rv180 Vpn Router
Cisco Rv180w Vpn Router Firmware
Cisco Rv180w Vpn Router
Event History
Aug 8, 2016
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-1430?
CVE-2016-1430 has a high severity rating due to the potential for remote authenticated users to execute arbitrary commands as root.
2
How do I fix CVE-2016-1430?
To fix CVE-2016-1430, users should update the firmware of their Cisco RV180 and RV180W devices to the latest version provided by Cisco.
3
Who is affected by CVE-2016-1430?
CVE-2016-1430 affects Cisco RV180 and RV180W routers with specific vulnerable firmware versions.
4
What type of attack does CVE-2016-1430 allow?
CVE-2016-1430 allows remote authenticated users to execute arbitrary commands, potentially compromising the device's security.
5
Can CVE-2016-1430 be exploited remotely?
Yes, CVE-2016-1430 can be exploited remotely by authenticated users through crafted HTTP requests.