First published: Wed Apr 03 2024(Updated: )
A vulnerability in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface.This vulnerability is due
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Small Business RV016 Router | ||
Cisco Small Business RV042 Router | ||
Cisco Small Business RV042G | ||
Cisco Small Business RV082 | ||
Cisco Small Business RV320 Router | ||
Cisco Small Business RV325 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of cisco-sa-sbiz-rv-xss-OQeRTup is classified as High due to the potential for exploitation via cross-site scripting.
To fix cisco-sa-sbiz-rv-xss-OQeRTup, upgrade the affected Cisco Small Business router models to the latest software version provided by Cisco.
cisco-sa-sbiz-rv-xss-OQeRTup affects Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 routers.
Yes, cisco-sa-sbiz-rv-xss-OQeRTup can be exploited by an unauthenticated attacker targeting authenticated users of the web-based interface.
The impact of cisco-sa-sbiz-rv-xss-OQeRTup allows attackers to execute arbitrary scripts in the context of the user's session, potentially leading to data theft or session hijacking.