First published: Wed Aug 03 2022(Updated: )
Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an unauthenticated, remote attacker to execute arbitrary code or cause a denial of service (DoS) condition on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sb-mult-vuln-CbVp4SUR
Credit: the following people for reporting these vulnerabilities:
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Products | =RV340 and RV345 Series Routers<1.0.03.26=RV340 and RV345 Series Routers<Earlier than 1.0.03.26=RV160 and RV260 Series Routers<1.0.01.05=RV160 and RV260 Series Routers<Earlier than 1.0.01.05 | 1.0.03.26 Earlier than 1.0.03.26 1.0.01.05 Earlier than 1.0.01.05 |
Cisco Products | =RV340 and RV345 Series Routers<1.0.03.26 and earlier | 1.0.03.26 and earlier |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)
The severity of cisco-sa-sb-mult-vuln-CbVp4SUR is high due to the potential for remote code execution and denial of service.
To fix cisco-sa-sb-mult-vuln-CbVp4SUR, upgrade the affected Cisco Small Business RV160, RV260, RV340, or RV345 Series Routers to the latest firmware version available.
The devices affected by cisco-sa-sb-mult-vuln-CbVp4SUR include Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers.
Yes, cisco-sa-sb-mult-vuln-CbVp4SUR can be exploited remotely by unauthenticated attackers.
If cisco-sa-sb-mult-vuln-CbVp4SUR is not addressed, attackers could gain control over the device or cause a denial of service, disrupting network operations.