cbcvebase.

Cisco Rv215W Firmware vulnerabilities

66 known vulnerabilities affecting cisco/rv215w_firmware.

Total CVEs
66
CISA KEV
0
Public exploits
2
Exploited in wild
1
Severity breakdown
CRITICAL7HIGH57MEDIUM2

Vulnerabilities

Page 1 of 4
CVE-2019-1663P1CRITICALCVSS 9.8ExploitedPoCfixed in 1.3.1.12019-02-28
CVE-2019-1663 [CRITICAL] CWE-119 CVE-2019-1663: A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, C A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device. The vulnerability is due to improper validation of user-supplied d
nvd
CVE-2014-0683P2CRITICALCVSS 10.0PoC≤ 1.1.0.52014-03-06
CVE-2014-0683 [CRITICAL] CWE-255 CVE-2014-0683: The web management interface on the Cisco RV110W firewall with firmware 1.2.0.9 and earlier, RV215W The web management interface on the Cisco RV110W firewall with firmware 1.2.0.9 and earlier, RV215W router with firmware 1.1.0.5 and earlier, and CVR100W router with firmware 1.0.1.19 and earlier does not prevent replaying of modified authentication requests, which allows remote attackers to obtain administrative access by leveraging the ability to i
nvd
CVE-2021-1459P2CRITICALCVSS 9.8v1.0.3.552021-04-08
CVE-2021-1459 [CRITICAL] CWE-119 CVE-2021-1459: A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device. The vulnerability is due to improper validation of user-supplied input in the web-based management interface. An attacker could exploi
nvd
CVE-2020-3144P2CRITICALCVSS 9.8fixed in 1.3.1.72020-07-16
CVE-2020-3144 [CRITICAL] CWE-284 CVE-2020-3144: A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, R A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction VPN Router, and RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary commands with administrative commands on an affected device. T
nvd
CVE-2022-20923P2CRITICALCVSS 9.8v1.0.3.55v1.2.2.8+1 more2022-09-08
CVE-2022-20923 [CRITICAL] CWE-303 CVE-2022-20923: A vulnerability in the IPSec VPN Server authentication functionality of Cisco Small Business RV110W, A vulnerability in the IPSec VPN Server authentication functionality of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an unauthenticated, remote attacker to bypass authentication controls and access the IPSec VPN network. This vulnerability is due to the improper implementation of the password validation algorithm. An
nvd
CVE-2018-0425P2CRITICALCVSS 9.8≤ 1.3.0.82018-10-05
CVE-2018-0425 [CRITICAL] CWE-200 CVE-2018-0425: A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, C A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to gain access to sensitive information. The vulnerability is due to improper access control to files within the we
nvd
CVE-2018-0426P2CRITICALCVSS 9.8≤ 1.3.0.82018-10-05
CVE-2018-0426 [CRITICAL] CWE-22 CVE-2018-0426: A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, C A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to gain access to sensitive information. The vulnerability is due to improper validation of directory traversal char
nvd
CVE-2018-0424P2HIGHCVSS 8.8≤ 1.3.0.82018-10-05
CVE-2018-0424 [HIGH] CWE-77 CVE-2018-0424: A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, C A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow an authenticated, remote attacker to execute arbitrary commands. The vulnerability is due to improper validation of user-supplied input to scripts by the we
nvd
CVE-2020-3146P2HIGHCVSS 8.8fixed in 1.3.1.72020-07-16
CVE-2020-3146 [HIGH] CWE-119 CVE-2020-3146: Multiple vulnerabilities in the web-based management interface of the Cisco RV110W Wireless-N VPN Fi Multiple vulnerabilities in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction VPN Router, and RV215W Wireless-N VPN Router could allow an authenticated, remote attacker to execute arbitrary code on an affected device. The vulnerabilities are due to improper validation of use
nvd
CVE-2020-3145P2HIGHCVSS 8.8fixed in 1.3.1.72020-07-16
CVE-2020-3145 [HIGH] CWE-119 CVE-2020-3145: Multiple vulnerabilities in the web-based management interface of the Cisco RV110W Wireless-N VPN Fi Multiple vulnerabilities in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction VPN Router, and RV215W Wireless-N VPN Router could allow an authenticated, remote attacker to execute arbitrary code on an affected device. The vulnerabilities are due to improper validation of use
nvd
CVE-2021-1203P3HIGHCVSS 7.2v1.0.3.442021-01-13
CVE-2021-1203 [HIGH] CWE-121 CVE-2021-1203: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code or cause an affected device to restart unexpectedly. The vulnerabilities are due to improper validation of user-supplied input in the web-based management
nvd
CVE-2021-1200P3HIGHCVSS 7.2v1.2.2.82021-01-13
CVE-2021-1200 [HIGH] CWE-121 CVE-2021-1200: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code or cause an affected device to restart unexpectedly. The vulnerabilities are due to improper validation of user-supplied input in the web-based management
nvd
CVE-2021-1202P3HIGHCVSS 7.2v1.2.2.82021-01-13
CVE-2021-1202 [HIGH] CWE-121 CVE-2021-1202: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code or cause an affected device to restart unexpectedly. The vulnerabilities are due to improper validation of user-supplied input in the web-based management
nvd
CVE-2021-1307P3HIGHCVSS 7.2v1.0.3.552021-01-13
CVE-2021-1307 [HIGH] CWE-121 CVE-2021-1307: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code or cause an affected device to restart unexpectedly. The vulnerabilities are due to improper validation of user-supplied input in the web-based management
nvd
CVE-2021-1180P3HIGHCVSS 7.2v1.0.3.442021-01-13
CVE-2021-1180 [HIGH] CWE-121 CVE-2021-1180: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code or cause an affected device to restart unexpectedly. The vulnerabilities are due to improper validation of user-supplied input in the web-based management
nvd
CVE-2021-1201P3HIGHCVSS 7.2v1.2.2.82021-01-13
CVE-2021-1201 [HIGH] CWE-121 CVE-2021-1201: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code or cause an affected device to restart unexpectedly. The vulnerabilities are due to improper validation of user-supplied input in the web-based management
nvd
CVE-2021-1190P3HIGHCVSS 7.2v1.0.3.442021-01-13
CVE-2021-1190 [HIGH] CWE-121 CVE-2021-1190: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code or cause an affected device to restart unexpectedly. The vulnerabilities are due to improper validation of user-supplied input in the web-based management
nvd
CVE-2021-1191P3HIGHCVSS 7.2v1.0.3.442021-01-13
CVE-2021-1191 [HIGH] CWE-121 CVE-2021-1191: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code or cause an affected device to restart unexpectedly. The vulnerabilities are due to improper validation of user-supplied input in the web-based management
nvd
CVE-2021-1179P3HIGHCVSS 7.2v1.0.3.442021-01-13
CVE-2021-1179 [HIGH] CWE-121 CVE-2021-1179: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code or cause an affected device to restart unexpectedly. The vulnerabilities are due to improper validation of user-supplied input in the web-based management
nvd
CVE-2021-1360P3HIGHCVSS 7.2v1.2.2.82021-01-13
CVE-2021-1360 [HIGH] CWE-121 CVE-2021-1360: Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code or cause an affected device to restart unexpectedly. The vulnerabilities are due to improper validation of user-supplied input in the web-based management
nvd