10
CVSSv2

CVE-2014-0683

Published: 06/03/2014 Updated: 15/12/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The web management interface on the Cisco RV110W firewall with firmware 1.2.0.9 and previous versions, RV215W router with firmware 1.1.0.5 and previous versions, and CVR100W router with firmware 1.0.1.19 and previous versions does not prevent replaying of modified authentication requests, which allows remote malicious users to obtain administrative access by leveraging the ability to intercept requests, aka Bug IDs CSCul94527, CSCum86264, and CSCum86275.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco rv110w_firmware

cisco rv110w -

cisco rv215w_firmware

cisco rv215w -

cisco cvr100w_firmware

cisco cvr100w -

Vendor Advisories

A vulnerability in the web management interface of the Cisco RV110W Wireless-N VPN Firewall, the Cisco RV215W Wireless-N VPN Router, and the Cisco CVR100W Wireless-N VPN Router could allow an unauthenticated, remote attacker to gain administrative-level access to the web management interface of the affected device The vulnerability is due to impr ...

Exploits

Cisco RV110W suffers from password disclosure and command execution vulnerabilities ...