CVE-2018-0426
published 2018-10-05CVE-2018-0426: A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco…
PriorityP264critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
6.37%
92.8th percentile
A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to gain access to sensitive information. The vulnerability is due to improper validation of directory traversal character sequences within the web-based management interface. An attacker could exploit this vulnerability by sending malicious requests to the targeted device. A successful exploit could allow the attacker to gain access to arbitrary files on the affected device, resulting in the disclosure of sensitive information.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_rv130w_wireless-n_multifunction_vpn_router_firmware | — | — |
| cisco | rv110w_firmware | <= 1.2.1.7 | — |
| cisco | rv110w_rv130w_and_rv215w_routers | — | — |
| cisco | rv130w_firmware | < 1.0.3.44 | 1.0.3.44 |
| cisco | rv215w_firmware | <= 1.3.0.8 | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Exploit vector is directory traversal via malicious HTTP requests to the web-based management interface of Cisco RV110W, RV130W, and RV215W routers; detect path traversal character sequences (e.g., '../') in requests to the management interface ↗
- →Attack is unauthenticated and remote, targeting the web-based management interface; monitor for unauthenticated requests containing traversal sequences to management ports on affected devices ↗
- ·Vulnerability affects Cisco RV110W, RV130W, and RV215W routers; tracked under Bug IDs CSCvj23233, CSCvj42750, CSCvj42752. Ensure management interface is not exposed to untrusted networks as no workaround exists. ↗
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
vendor_cisco7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco RV110W, RV130W, and RV215W Routers Management Interface Directory Traversal Vulnerability
vendor_cisco·2018-09-05·CVSS 7.5
CVE-2018-0426 [HIGH] CWE-22 Cisco RV110W, RV130W, and RV215W Routers Management Interface Directory Traversal Vulnerability
Cisco RV110W, RV130W, and RV215W Routers Management Interface Directory Traversal Vulnerability
A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to gain access to sensitive information.
The vulnerability is due to improper validation of directory traversal character sequences within the web-based management interface. An attacker could exploit
this vulnerability by sending malicious requests to the targeted device. A successful exploit could allow the attacker to gain access to arbitrary files on the affected device,
resulting in the disclosure of sensitive information.
Cisco has released software updates
Cisco
Cisco RV110W, RV130W, and RV215W Routers Management Interface Directory Traversal Vulnerability
vendor_cisco·CVSS 3.0
CVE-2018-0426 Cisco RV110W, RV130W, and RV215W Routers Management Interface Directory Traversal Vulnerability
CVE-2018-0426: Cisco RV110W, RV130W, and RV215W Routers Management Interface Directory Traversal Vulnerability
A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to gain access to sensitive information. The vulnerability is due to improper validation of directory traversal character sequences within the web-based management interface. An attacker could exploit this vulnerability by sending malicious requests to the targeted device. A successful exploit could allow the attacker to gain access to arbitrary files on the affected device, resulting in the disclosure of sensitive information. Cisco has released so
GHSA
GHSA-6fjh-4256-cjjm: A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, a
ghsa_unreviewed·2022-05-13
CVE-2018-0426 [CRITICAL] CWE-22 GHSA-6fjh-4256-cjjm: A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, a
A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to gain access to sensitive information. The vulnerability is due to improper validation of directory traversal character sequences within the web-based management interface. An attacker could exploit this vulnerability by sending malicious requests to the targeted device. A successful exploit could allow the attacker to gain access to arbitrary files on the affected device, resulting in the disclosure of sensitive information.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2018-10-05
Published