CVE-2019-1943
published 2019-07-17CVE-2019-1943: A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Switches software could allow an unauthenticated, remote attacker to…
PriorityP347medium6.1CVSS 3.0
AVNACLPRNUIRSCCLILAN
EXPLOIT
EPSS
10.68%
95.3th percentile
A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Switches software could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. The vulnerability is due to improper input validation of the parameters of an HTTP request. An attacker could exploit this vulnerability by intercepting a user's HTTP request and modifying it into a request that causes the web interface to redirect the user to a specific malicious URL. This type of vulnerability is known as an open redirect attack and is used in phishing attacks that get users to unknowingly visit malicious sites.
Affected
29 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_small_business_300_series_managed_switches | — | — |
| cisco | sf300-08_firmware | — | — |
| cisco | sf300-24_firmware | — | — |
| cisco | sf300-24mp_firmware | — | — |
| cisco | sf300-24p_firmware | — | — |
| cisco | sf300-24pp_firmware | — | — |
| cisco | sf300-48_firmware | — | — |
| cisco | sf300-48p_firmware | — | — |
| cisco | sf300-48pp_firmware | — | — |
| cisco | sf302-08_firmware | — | — |
| cisco | sf302-08mp_firmware | — | — |
| cisco | sf302-08mpp_firmware | — | — |
| cisco | sf302-08p_firmware | — | — |
| cisco | sf302-08pp_firmware | — | — |
| cisco | sg300-10_firmware | — | — |
| cisco | sg300-10mp_firmware | — | — |
| cisco | sg300-10mpp_firmware | — | — |
| cisco | sg300-10p_firmware | — | — |
| cisco | sg300-10pp_firmware | — | — |
| cisco | sg300-10sfp_firmware | — | — |
| cisco | sg300-20_firmware | — | — |
| cisco | sg300-28_firmware | — | — |
| cisco | sg300-28mp_firmware | — | — |
| cisco | sg300-28p_firmware | — | — |
| cisco | sg300-28pp_firmware | — | — |
CVSS provenance
nvdv3.06.1MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:N
vendor_cisco4.7MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Small Business Series Switches Open Redirect Vulnerability
vendor_cisco·2019-07-17·CVSS 4.7
CVE-2019-1943 [MEDIUM] CWE-601 Cisco Small Business Series Switches Open Redirect Vulnerability
Cisco Small Business Series Switches Open Redirect Vulnerability
A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Switches software could allow an unauthenticated, remote attacker to redirect a user to a malicious web page.
The vulnerability is due to improper input validation of the parameters of an HTTP request. An attacker could exploit this vulnerability by intercepting a user's HTTP request and modifying it into a request that causes the web interface to redirect the user to a specific malicious URL. This type of vulnerability is known as an open redirect attack and is used in phishing attacks that get users to unknowingly visit malicious sites.
There are no workarounds that address this vulnerability.
This advisory is available at the following l
Cisco
Cisco Small Business Series Switches Open Redirect Vulnerability
vendor_cisco·CVSS 3.0
CVE-2019-1943 Cisco Small Business Series Switches Open Redirect Vulnerability
CVE-2019-1943: Cisco Small Business Series Switches Open Redirect Vulnerability
A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Switches software could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. The vulnerability is due to improper input validation of the parameters of an HTTP request. An attacker could exploit this vulnerability by intercepting a user's HTTP request and modifying it into a request that causes the web interface to redirect the user to a specific malicious URL. This type of vulnerability is known as an open redirect attack and is used in phishing attacks that get users to unknowingly visit malicious sites. There are no
CVSS: 3.0
CWE: CWE-601, CWE-601
Bug IDs: CSCvp23218
GHSA
GHSA-c4p7-9fgh-g95m: A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Switches software could allow an unauthenticated, remote attacke
ghsa_unreviewed·2022-05-24
CVE-2019-1943 [MEDIUM] CWE-601 GHSA-c4p7-9fgh-g95m: A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Switches software could allow an unauthenticated, remote attacke
A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Switches software could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. The vulnerability is due to improper input validation of the parameters of an HTTP request. An attacker could exploit this vulnerability by intercepting a user's HTTP request and modifying it into a request that causes the web interface to redirect the user to a specific malicious URL. This type of vulnerability is known as an open redirect attack and is used in phishing attacks that get users to unknowingly visit malicious sites.
No detection rules found.
Exploit-DB
CISCO Small Business 200 / 300 / 500 Switches - Multiple Vulnerabilities
exploitdb·2019-07-15·CVSS 4.7
CVE-2019-1943 [MEDIUM] CISCO Small Business 200 / 300 / 500 Switches - Multiple Vulnerabilities
CISCO Small Business 200 / 300 / 500 Switches - Multiple Vulnerabilities
---
# Exploit Title: CISCO Small Business 200, 300, 500 Switches Multiple Vulnerabilities.
# Shodan query: /config/log_off_page.html
# Discovered Date: 07/03/2014
# Reported Date: 08/04/2019
# Exploit Author: Ramikan
# Website: http://fact-in-hack.blogspot.com
# Vendor Homepage:https://www.cisco.com/c/en/us/products/switches/small-business-300-series-managed-switches/index.html
# Affected Devices: The affected products are all Cisco Small Business 200, 300, and 500 Series Managed Switches with the web management interface enabled,
# Tested On: Cisco C300 Switch
# Version: 1.3.7.18
# CVE : CVE-2019-1943
# CVSS v3: 4.7 (AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:N)
# Category:Hardware, Web Apps
# Reference : https://tools.cisc
Nuclei
Cisco Small Business 200,300 and 500 Series Switches - Open Redirect
nuclei·CVSS 6.1
CVE-2019-1943 [MEDIUM] Cisco Small Business 200,300 and 500 Series Switches - Open Redirect
Cisco Small Business 200,300 and 500 Series Switches - Open Redirect
Cisco Small Business 200,300 and 500 Series Switches contain an open redirect vulnerability in the Web UI. An attacker can redirect a user to a malicious site and possibly obtain sensitive information, modify data, and/or execute unauthorized operations.
Template:
id: CVE-2019-1943
info:
name: Cisco Small Business 200,300 and 500 Series Switches - Open Redirect
author: bhutch
severity: medium
description: |
Cisco Small Business 200,300 and 500 Series Switches contain an open redirect vulnerability in the Web UI. An attacker can redirect a user to a malicious site and possibly obtain sensitive information, modify data, and/or execute unauthorized operations.
impact: |
An attacker can exploit this vulnerability to redir
No writeups or analysis indexed.
2019-07-17
Published