cbcvebase.
CVE-2020-3144
published 2020-07-16

CVE-2020-3144: A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction VPN…

PriorityP268critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
2.87%
85.2th percentile
A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction VPN Router, and RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary commands with administrative commands on an affected device. The vulnerability is due to improper session management on affected devices. An attacker could exploit this vulnerability by sending a crafted HTTP request to the affected device. A successful exploit could allow the attacker to gain administrative access on the affected device.

Affected

6 ranges
VendorProductVersion rangeFixed in
ciscocisco_rv130w_wireless-n_multifunction_vpn_router_firmware
ciscorv110w_firmware< 1.2.2.81.2.2.8
ciscorv110w_rv130_rv130w_and_rv215w_routers
ciscorv130_firmware< 1.0.3.551.0.3.55
ciscorv130w_firmware< 1.0.3.551.0.3.55
ciscorv215w_firmware< 1.3.1.71.3.1.7

Detection & IOCsextracted from sources · hover to see the quote

  • Exploit vector is a crafted HTTP request to the web-based management interface of affected Cisco RV-series routers; monitor for unauthenticated HTTP requests that result in administrative access or session establishment without prior credential exchange.
  • Root cause is improper session management; look for anomalous session tokens or session IDs being accepted by the management interface without a corresponding authenticated login event.
  • Successful exploitation grants administrative command execution; alert on unexpected administrative actions (configuration changes, command execution) originating from unauthenticated or newly-established sessions on affected devices (RV110W, RV130, RV130W, RV215W).
  • ·Vulnerability affects Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction VPN Router, and RV215W Wireless-N VPN Router only; scope detection rules to these specific device models.
  • ·There are no workarounds available; the only mitigation is applying the vendor-released software updates. Ensure patching is prioritized for all affected devices.
  • ·Tracked under Cisco Bug IDs CSCvr96247, CSCvr96252, and CSCvr96256; use these identifiers when querying Cisco's bug tracker or PSIRT for patch status across the affected product lines.

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_cisco9.8CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.