Vulnerability identifier: #VU17194
Vulnerability risk: Low
CVSSv3.1: 7.2 [CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:H/RL:O/RC:C]
CVE-ID:
CWE-ID:
CWE-200
Exploitation vector: Network
Exploit availability: Yes
Vulnerable software:
Small Business RV325 Dual Gigabit WAN VPN Router
Hardware solutions /
Routers & switches, VoIP, GSM, etc
Small Business RV320 Dual Gigabit WAN VPN Router
Hardware solutions /
Routers & switches, VoIP, GSM, etc
Vendor: Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to obtain potentially sensitive information.
The vulnerability exists due to improper access controls for URLs. A remote attacker can connect to an affected device via HTTP or HTTPS and requesting specific URLs to download the router configuration or detailed diagnostic information.
Mitigation
Update the affected firmware to version 1.4.2.19.
Vulnerable software versions
Small Business RV325 Dual Gigabit WAN VPN Router: 1.4.2.15 - 1.4.2.17
Small Business RV320 Dual Gigabit WAN VPN Router: 1.4.2.15 - 1.4.2.17
External links
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190123-rv-info
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
Yes. This vulnerability is being exploited in the wild.