cbcvebase.
CVE-2020-3451
published 2020-09-04

CVE-2020-3451: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attacker with…

medium4.7CVSS 3.1
AVNACLPRHUINSUCLILAL
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attacker with administrative credentials to execute arbitrary commands on the underlying operating system (OS) as a restricted user. For more information about these vulnerabilities, see the Details section of this advisory.

Affected

6 ranges
VendorProductVersion rangeFixed in
ciscocisco_small_business_rv_series_router_firmware
ciscorv340_firmware< 1.0.03.191.0.03.19
ciscorv340w_firmware< 1.0.03.191.0.03.19
ciscorv345_firmware< 1.0.03.191.0.03.19
ciscorv345p_firmware< 1.0.03.191.0.03.19
ciscosmall_business_rv340_series_routers

CVSS provenance

nvdv3.14.7MEDIUMCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L
vulncheck4.7MEDIUM