OS Command Injection in Cisco Systems, Inc products - CVE-2022-20706
Published: February 2, 2022 / Updated: February 22, 2022
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary shell commands on the target system.
The vulnerability exists due to improper input validation in the Open Plug and Play (PnP) module of Cisco Small Business RV Series Routers. A remote unauthenticated attacker can execute arbitrary commands on the underlying Linux operating system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system but requires a man-in-the-middle position or having an established foothold on a specific network device that is connected to the vulnerable router.
Affected software
Cisco RV345 Dual WAN Gigabit VPN Router
Cisco RV340 Dual WAN Gigabit VPN Router
Cisco RV340W Dual WAN Gigabit Wireless-AC VPN Router
Cisco Small Business RV160 Series VPN Router
Cisco Small Business RV260W Wireless-AC VPN Router
Cisco Small Business RV260P VPN Router with POE
Cisco Small Business RV260 VPN Router
Cisco Small Business RV160W Wireless-AC VPN Router
How to mitigate CVE-2022-20706
Cisco RV345 Dual WAN Gigabit VPN Router - update to 1.0.03.26
Cisco RV340 Dual WAN Gigabit VPN Router - update to 1.0.03.26
Cisco RV340W Dual WAN Gigabit Wireless-AC VPN Router - update to 1.0.03.26