CVE-2020-3453
published 2020-09-04CVE-2020-3453: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attacker with…
PriorityP341medium6.8CVSS 3.1
AVAACLPRHUINSUCHIHAH
EPSS
3.08%
86.3th percentile
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attacker with administrative credentials to execute arbitrary commands on the underlying operating system (OS) as a restricted user. For more information about these vulnerabilities, see the Details section of this advisory.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_small_business_rv_series_router_firmware | — | — |
| cisco | rv340_firmware | < 1.0.03.19 | 1.0.03.19 |
| cisco | rv340w_firmware | < 1.0.03.19 | 1.0.03.19 |
| cisco | rv345_firmware | < 1.0.03.19 | 1.0.03.19 |
| cisco | rv345p_firmware | < 1.0.03.19 | 1.0.03.19 |
| cisco | small_business_rv340_series_routers | — | — |
CVSS provenance
nvdv3.16.8MEDIUMCVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.7HIGHAV:A/AC:L/Au:S/C:C/I:C/A:C
vendor_cisco7.3HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Small Business RV340 Series Routers Command Injection and Remote Code Execution Vulnerabilities
vendor_cisco·2020-09-02·CVSS 7.3
CVE-2020-3451 [HIGH] CWE-119 Cisco Small Business RV340 Series Routers Command Injection and Remote Code Execution Vulnerabilities
Cisco Small Business RV340 Series Routers Command Injection and Remote Code Execution Vulnerabilities
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system (OS) as a restricted user.
For more information about these vulnerabilities, see the Details section of this advisory.
Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.
This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rv-osinj-rce-pwTkPCJv
Cisco
Cisco Small Business RV340 Series Routers Command Injection and Remote Code Execution Vulnerabilities
vendor_cisco·CVSS 3.1
CVE-2020-3453 Cisco Small Business RV340 Series Routers Command Injection and Remote Code Execution Vulnerabilities
CVE-2020-3453: Cisco Small Business RV340 Series Routers Command Injection and Remote Code Execution Vulnerabilities
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system (OS) as a restricted user. For more information about these vulnerabilities, see the
CVSS: 3.1
CWE: CWE-119, CWE-20, CWE-119, CWE-20
Bug IDs: CSCvu40103, CSCvu49391, CSCvu40103, CSCvu49391
GHSA
GHSA-4w5g-66r3-886x: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attac
ghsa_unreviewed·2022-05-24
CVE-2020-3453 [HIGH] CWE-20 GHSA-4w5g-66r3-886x: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attac
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attacker with administrative credentials to execute arbitrary commands on the underlying operating system (OS) as a restricted user. For more information about these vulnerabilities, see the Details section of this advisory.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-2224 jenkins-2-plugins/matrix-project: Stored XSS vulnerability in single axis builds tooltips
bugzilla·2020-07-15·CVSS 5.4
CVE-2020-2224 [MEDIUM] CVE-2020-2224 jenkins-2-plugins/matrix-project: Stored XSS vulnerability in single axis builds tooltips
CVE-2020-2224 jenkins-2-plugins/matrix-project: Stored XSS vulnerability in single axis builds tooltips
Matrix Project Plugin 1.16 and earlier does not escape node names shown in tooltips on the overview page of builds with a single axis. This results in a stored cross-site scripting (XSS) vulnerability exploitable by users with Agent/Configure permission.
References:
https://www.jenkins.io/security/advisory/2020-07-15/
Discussion:
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.5
Via RHSA-2020:3453 https://access.redhat.com/errata/RHSA-2020:3453
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2020-2224
---
This issue has been addr
Bugzilla
CVE-2020-2225 jenkins-2-plugins/matrix-project: Stored XSS vulnerability in multiple axis builds tooltips
bugzilla·2020-07-15·CVSS 5.4
CVE-2020-2225 [MEDIUM] CVE-2020-2225 jenkins-2-plugins/matrix-project: Stored XSS vulnerability in multiple axis builds tooltips
CVE-2020-2225 jenkins-2-plugins/matrix-project: Stored XSS vulnerability in multiple axis builds tooltips
Matrix Project Plugin 1.16 and earlier does not escape the axis names shown in tooltips on the overview page of builds with multiple axes. This results in a stored cross-site scripting (XSS) vulnerability exploitable by users with Job/Configure permission.
References:
https://www.jenkins.io/security/advisory/2020-07-15/
Discussion:
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.5
Via RHSA-2020:3453 https://access.redhat.com/errata/RHSA-2020:3453
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2020-2225
---
This issue has been
Bugzilla
CVE-2020-2226 jenkins-2-plugins/matrix-auth: Stored XSS vulnerability in Matrix Authorization Strategy Plugin
bugzilla·2020-07-15·CVSS 5.4
CVE-2020-2226 [MEDIUM] CVE-2020-2226 jenkins-2-plugins/matrix-auth: Stored XSS vulnerability in Matrix Authorization Strategy Plugin
CVE-2020-2226 jenkins-2-plugins/matrix-auth: Stored XSS vulnerability in Matrix Authorization Strategy Plugin
Matrix Authorization Strategy Plugin 2.6.1 and earlier does not escape user names shown in the permission table. This results in a stored cross-site scripting (XSS) vulnerability. When using project-based matrix authorization, this vulnerability can be exploited by a user with Job/Configure or Agent/Configure permission, otherwise by users with Overall/Administer permission.
References:
https://www.jenkins.io/security/advisory/2020-07-15/
Discussion:
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.5
Via RHSA-2020:3453 https://access.redhat.com/errata/RHSA-2020:3453
---
This bug is now closed. Further updates for individual pr
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rv-osinj-rce-pwTkPCJvhttps://www.zerodayinitiative.com/advisories/ZDI-20-1101/https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-rv-osinj-rce-pwTkPCJvhttps://www.zerodayinitiative.com/advisories/ZDI-20-1101/
2020-09-04
Published