Cisco Small Business是美国思科(Cisco)公司的一个交换机。 Cisco Small Business路由器存在缓冲区错误漏洞,该漏洞源于经过身份验证的远程攻击者利用其web管理界面对传入的HTTP数据包中user字段验证不足造成的。攻击者可以通过向基于web的管理界面发送精心设计的请求导致其可以使用root权限在受影响的设备上执行任意命令,或者导致设备意外重启,从而导致拒绝服务。以下产品受到影响:RV110W、RV130、RV130W、RV215W。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Small Business RV Series Router Firmware | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-20857 | 9.8 CRITICAL | Cisco Nexus Dashboard Unauthorized Access Vulnerabilities |
| CVE-2022-20858 | 9.8 CRITICAL | Cisco Nexus Dashboard Unauthorized Access Vulnerabilities |
| CVE-2022-20861 | 9.8 CRITICAL | Cisco Nexus Dashboard Unauthorized Access Vulnerabilities |
| CVE-2022-20860 | 7.4 HIGH | Cisco Nexus Dashboard SSL Certificate Validation Vulnerability |
| CVE-2022-20916 | 6.1 MEDIUM | Cisco IoT Control Center Cross-Site Scripting Vulnerability |
| CVE-2022-20906 | 6.0 MEDIUM | Cisco Nexus Dashboard Privilege Escalation Vulnerabilities |
| CVE-2022-20909 | 6.0 MEDIUM | Cisco Nexus Dashboard Privilege Escalation Vulnerabilities |
| CVE-2022-20907 | 6.0 MEDIUM | Cisco Nexus Dashboard Privilege Escalation Vulnerabilities |
| CVE-2022-20908 | 6.0 MEDIUM | Cisco Nexus Dashboard Privilege Escalation Vulnerabilities |
| CVE-2022-20913 | 4.9 MEDIUM | Cisco Nexus Dashboard Arbitrary File Write Vulnerability |
| CVE-2022-20912 | 4.7 MEDIUM | Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Remote Command Execution an |
| CVE-2022-20876 | 4.7 MEDIUM | Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Remote Command Execution an |
| CVE-2022-20875 | 4.7 MEDIUM | Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Remote Command Execution an |
| CVE-2022-20901 | 4.7 MEDIUM | Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Remote Command Execution an |
| CVE-2022-20900 | 4.7 MEDIUM | Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Remote Command Execution an |
| CVE-2022-20899 | 4.7 MEDIUM | Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Remote Command Execution an |
| CVE-2022-20898 | 4.7 MEDIUM | Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Remote Command Execution an |
| CVE-2022-20897 | 4.7 MEDIUM | Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Remote Command Execution an |
| CVE-2022-20896 | 4.7 MEDIUM | Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Remote Command Execution an |
| CVE-2022-20902 | 4.7 MEDIUM | Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Remote Command Execution an |
Showing top 20 of 45 CVEs. View all on vendor page → →
No comments yet