CVE-2020-3451
published 2020-09-04CVE-2020-3451: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attacker with…
PriorityP278medium4.7CVSS 3.1
AVNACLPRHUINSUCLILAL
ITWVulnCheck KEV
Exploited in the wild
EPSS
2.17%
80.3th percentile
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attacker with administrative credentials to execute arbitrary commands on the underlying operating system (OS) as a restricted user. For more information about these vulnerabilities, see the Details section of this advisory.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_small_business_rv_series_router_firmware | — | — |
| cisco | rv340_firmware | < 1.0.03.19 | 1.0.03.19 |
| cisco | rv340w_firmware | < 1.0.03.19 | 1.0.03.19 |
| cisco | rv345_firmware | < 1.0.03.19 | 1.0.03.19 |
| cisco | rv345p_firmware | < 1.0.03.19 | 1.0.03.19 |
| cisco | small_business_rv340_series_routers | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Vulnerability targets the web-based management interface of Cisco Small Business RV340 Series Routers; monitor for unexpected or anomalous HTTP/HTTPS requests to the management interface that may contain OS command injection payloads ↗
- →Track Cisco Bug IDs CSCvu40103 and CSCvu49391 for patch status and vendor-specific detection signatures related to this CVE ↗
- ·The NVD description states the attacker must be authenticated with administrative credentials, while the Cisco advisory states the attacker can be unauthenticated — verify the correct authentication requirement against the latest vendor advisory before tuning detection rules ↗
- ·Cisco confirms there are no workarounds available; patching via software update is the only remediation, meaning unpatched devices remain fully exposed ↗
CVSS provenance
nvdv3.14.7MEDIUMCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L
nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
vulncheck4.7MEDIUM
vendor_cisco7.3HIGH
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Small Business RV340 Series Routers Command Injection and Remote Code Execution Vulnerabilities
vendor_cisco·2020-09-02·CVSS 7.3
CVE-2020-3451 [HIGH] CWE-119 Cisco Small Business RV340 Series Routers Command Injection and Remote Code Execution Vulnerabilities
Cisco Small Business RV340 Series Routers Command Injection and Remote Code Execution Vulnerabilities
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system (OS) as a restricted user.
For more information about these vulnerabilities, see the Details section of this advisory.
Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.
This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rv-osinj-rce-pwTkPCJv
Cisco
Cisco Small Business RV340 Series Routers Command Injection and Remote Code Execution Vulnerabilities
vendor_cisco·CVSS 3.1
CVE-2020-3451 Cisco Small Business RV340 Series Routers Command Injection and Remote Code Execution Vulnerabilities
CVE-2020-3451: Cisco Small Business RV340 Series Routers Command Injection and Remote Code Execution Vulnerabilities
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system (OS) as a restricted user. For more information about these vulnerabilities, see the
CVSS: 3.1
CWE: CWE-119, CWE-20, CWE-119, CWE-20
Bug IDs: CSCvu40103, CSCvu49391, CSCvu40103, CSCvu49391
GHSA
GHSA-jqfg-vvx5-35cc: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attac
ghsa_unreviewed·2022-05-24
CVE-2020-3451 [MEDIUM] CWE-20 GHSA-jqfg-vvx5-35cc: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attac
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attacker with administrative credentials to execute arbitrary commands on the underlying operating system (OS) as a restricted user. For more information about these vulnerabilities, see the Details section of this advisory.
VulnCheck
Cisco rv340w_firmware Improper Restriction of Operations within the Bounds of a Memory Buffer
vulncheck·2020·CVSS 4.7
CVE-2020-3451 [MEDIUM] Cisco rv340w_firmware Improper Restriction of Operations within the Bounds of a Memory Buffer
Cisco rv340w_firmware Improper Restriction of Operations within the Bounds of a Memory Buffer
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attacker with administrative credentials to execute arbitrary commands on the underlying operating system (OS) as a restricted user. For more information about these vulnerabilities, see the Details section of this advisory.
Affected: Cisco rv340w_firmware
Required Action: Apply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.
Exploitation References: https://media.defense.gov/2024/Sep/18/2003547016/-1/-1/0/CSA-PRC-LINKED-ACTORS-BOTNET.PDF
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rv-osinj-rce-pwTkPCJvhttps://www.zerodayinitiative.com/advisories/ZDI-20-1100/https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rv-osinj-rce-pwTkPCJvhttps://www.zerodayinitiative.com/advisories/ZDI-20-1100/
2020-09-04
Published
Exploited in the wild