Cisco Small Business RV340是美国思科(Cisco)公司的一个路由器。连接两个或多个网络的硬件设备,在网络间起网关的作用。 Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers存在安全漏洞,该漏洞源于文件上传上下文中的授权执行机制不足,攻击者利用该漏洞可以将任意文件上传到受影响的设备。
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| Cisco | Cisco Small Business RV Series Router Firmware | n/a | - |
|
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | PoC based on https://unsafe[.]sh/go-173464.html research | https://github.com/RegularITCat/CVE-2023-20073 | POC详情 |
| 2 | A vulnerability in the web-based management interface of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an unauthenticated, remote attacker to upload arbitrary files to an affected device. This vulnerability is due to insufficient authorization enforcement mechanisms in the context of file uploads. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to upload arbitrary files to the affected device. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-20073.yaml | POC详情 |
未找到公开 POC。
登录以生成 AI POC| CVE-2023-20102 | 8.8 HIGH | Cisco Secure Network Analytics 代码问题漏洞 |
| CVE-2023-20128 | 7.2 HIGH | Cisco Small Business 操作系统命令注入漏洞 |
| CVE-2023-20117 | 7.2 HIGH | Cisco Small Business 操作系统命令注入漏洞 |
| CVE-2023-20118 | 6.5 MEDIUM | Cisco Small Business 输入验证错误漏洞 |
| CVE-2023-20131 | 6.5 MEDIUM | Cisco Prime Infrastructure和Cisco Evolved Programmable Network Manager 跨站脚本漏洞 |
| CVE-2023-20130 | 6.5 MEDIUM | Cisco Prime Infrastructure 跨站请求伪造漏洞 |
| CVE-2023-20129 | 6.5 MEDIUM | Cisco Prime Infrastructure 路径遍历漏洞 |
| CVE-2023-20127 | 6.5 MEDIUM | Cisco Prime Infrastructure 安全漏洞 |
| CVE-2023-20124 | 6.5 MEDIUM | Cisco Small Business 命令注入漏洞 |
| CVE-2023-20123 | 6.3 MEDIUM | Cisco Duo 安全漏洞 |
| CVE-2023-20151 | 6.1 MEDIUM | Cisco Small Business 跨站脚本漏洞 |
| CVE-2023-20141 | 6.1 MEDIUM | Cisco Small Business 跨站脚本漏洞 |
| CVE-2023-20140 | 6.1 MEDIUM | Cisco Small Business 跨站脚本漏洞 |
| CVE-2023-20139 | 6.1 MEDIUM | Cisco Small Business 跨站脚本漏洞 |
| CVE-2023-20138 | 6.1 MEDIUM | Cisco Small Business 跨站脚本漏洞 |
| CVE-2023-20137 | 6.1 MEDIUM | Cisco Small Business 跨站脚本漏洞 |
| CVE-2023-20142 | 6.1 MEDIUM | Cisco Small Business 跨站脚本漏洞 |
| CVE-2023-20143 | 6.1 MEDIUM | Cisco Small Business 跨站脚本漏洞 |
| CVE-2023-20146 | 6.1 MEDIUM | Cisco Small Business 跨站脚本漏洞 |
| CVE-2023-20150 | 6.1 MEDIUM | Cisco Small Business 跨站脚本漏洞 |
显示前 20 条,共 40 条。 查看全部 → →
暂无评论