CVE-2019-15990
26.11.2019, 04:15
A vulnerability in the web-based management interface of certain Cisco Small Business RV Series Routers could allow an unauthenticated, remote attacker to view information displayed in the web-based management interface. The vulnerability is due to improper authorization of HTTP requests. An attacker could exploit this vulnerability by sending crafted HTTP requests to the web-based management interface of an affected device. A successful exploit could allow the attacker to view information displayed in the web-based management interface without authentication.Enginsight
Vendor | Product | Version |
---|---|---|
cisco | rv016_multi-wan_vpn_firmware | 𝑥 < 4.2.3.10 |
cisco | rv042_dual_wan_vpn_firmware | 𝑥 < 4.2.3.10 |
cisco | rv042g_dual_gigabit_wan_vpn_firmware | 𝑥 < 4.2.3.10 |
cisco | rv082_dual_wan_vpn_firmware | 𝑥 < 4.2.3.10 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration