CVE-2019-1652
Cisco Small Business Routers Improper Input Validation Vulnerability
7.2
CVSS 3.1
95.9 %
EPSS (current)
2022-03-03
KEV addition
No
Ransomware
Timeline
Publication, first public exploit and KEV addition on a day axis.
Key facts
Vendor / product: Cisco / Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers
Published: 2019-01-24 · Due (CISA): 2022-03-17
CWE: CWE-78 · EU list: no
Exploit references (metadata only)
| Source | Reference | Title | Date |
|---|---|---|---|
| metasploit | exploit/linux/http/cisco_rv32x_rce | exploit/linux/http/cisco_rv32x_rce | 2018-09-09 |
| exploitdb | 46243 | Cisco RV320 Dual Gigabit WAN VPN Router 1.4.2.15 - Command Injection | 2019-01-25 |
| exploitdb | 46655 | Cisco RV320 and RV325 - Unauthenticated Remote Code Execution (Metasploit) | 2019-04-03 |
References only — no downloads or instructions.