Language:
http://www.nessus.org/u?f54bf7af
http://www.nessus.org/u?2764da3f
Severity: High
ID: 124060
File Name: cisco-sa-20190123-rv-inject.nasl
Version: 1.30
Type: remote
Family: CISCO
Published: 4/15/2019
Updated: 4/25/2023
Supported Sensors: Nessus
Risk Factor: High
Score: 7.4
Risk Factor: High
Base Score: 9
Temporal Score: 7.4
Vector: CVSS2#AV:N/AC:L/Au:S/C:C/I:C/A:C
CVSS Score Source: CVE-2019-1652
Risk Factor: High
Base Score: 7.5
Temporal Score: 7
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Temporal Vector: CVSS:3.0/E:F/RL:O/RC:C
CVSS Score Source: CVE-2019-1653
CPE: x-cpe:/o:cisco:small_business_rv_series_router_firmware
Required KB Items: Cisco/Small_Business_Router/Version, Cisco/Small_Business_Router/Model
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 1/23/2019
Vulnerability Publication Date: 1/24/2019
CISA Known Exploited Vulnerability Due Dates: 3/17/2022, 5/3/2022
Metasploit (Cisco RV320 and RV325 Unauthenticated Remote Code Execution)
CVE: CVE-2019-1652, CVE-2019-1653
CISA-NCAS: AA22-011A
CISCO-SA: cisco-sa-20190123-rv-info, cisco-sa-20190123-rv-inject
IAVA: 0001-A-0008-S, 0001-A-0009-S, 2019-A-0356
CISCO-BUG-ID: CSCvg85922, CSCvm78058