cisco-sa-rv110w-static-cred-BMTWBWTy: Cisco Small Business RV110W Wireless-N VPN Firewall Static Default Credential Vulnerability
A vulnerability in the Telnet service of Cisco Small Business RV110W Wireless-N VPN Firewall Routers could allow an unauthenticated, remote attacker to take full control of the device with a high-privileged account. The vulnerability exists because a system account has a default and static password. An attacker could exploit this vulnerability by using this default account to connect to the affected system. A successful exploit could allow the attacker to gain full control of an affected device. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rv110w-static-cred-BMTWBWTy
Credit
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID cisco-sa-rv110w-static-cred-BMTWBWTy?
The vulnerability ID cisco-sa-rv110w-static-cred-BMTWBWTy refers to a flaw in the Telnet service of Cisco Small Business RV110W routers that allows unauthorized remote access.
What is the severity of cisco-sa-rv110w-static-cred-BMTWBWTy?
The severity of cisco-sa-rv110w-static-cred-BMTWBWTy is considered high due to the potential for unauthorized remote control of the device.
How do I fix cisco-sa-rv110w-static-cred-BMTWBWTy?
To fix cisco-sa-rv110w-static-cred-BMTWBWTy, it is recommended to change the default credentials and disable the Telnet service if not needed.
Who is affected by cisco-sa-rv110w-static-cred-BMTWBWTy?
The vulnerability affects users of the Cisco Small Business RV110W Wireless-N VPN Firewall routers.
What are the potential risks of cisco-sa-rv110w-static-cred-BMTWBWTy?
The potential risks of cisco-sa-rv110w-static-cred-BMTWBWTy include unauthorized access and full control over the affected router by remote attackers.