#VU31754 Improper Authorization in RV110W Wireless-N VPN Firewall and RV215W Wireless-N VPN Router - CVE-2020-3150
Published: July 22, 2020
RV110W Wireless-N VPN Firewall
RV215W Wireless-N VPN Router
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to bypass authorization process.
The vulnerability exists due to improper authorization of an HTTP request. A remote attacker can access a specific URI on the web-based management interface of the router, but only after any valid user has opened a specific file on the device since the last reboot, and view sensitive information on the target device.