CVE-2019-1652

Cisco Small Business Routers Improper Input Validation Vulnerability

7.2
CVSS 3.1
95.9 %
EPSS (current)
2022-03-03
KEV addition
No
Ransomware

Timeline

Publication, first public exploit and KEV addition on a day axis.

Key facts

Vendor / product: Cisco / Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers

Published: 2019-01-24 · Due (CISA): 2022-03-17

CWE: CWE-78 · EU list: no

Exploit references (metadata only)

SourceReferenceTitleDate
metasploitexploit/linux/http/cisco_rv32x_rceexploit/linux/http/cisco_rv32x_rce2018-09-09
exploitdb46243Cisco RV320 Dual Gigabit WAN VPN Router 1.4.2.15 - Command Injection2019-01-25
exploitdb46655Cisco RV320 and RV325 - Unauthenticated Remote Code Execution (Metasploit)2019-04-03

References only — no downloads or instructions.

Sources