Cisco RV320 and RV325 Routers CVE-2019-1652 Remote Command Injection Vulnerability
BID:106728
CVE-2019-1652 |Info
Cisco RV320 and RV325 Routers CVE-2019-1652 Remote Command Injection Vulnerability
| Bugtraq ID: | 106728 |
| Class: | Input Validation Error |
| CVE: |
CVE-2019-1652 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 23 2019 12:00AM |
| Updated: | Jan 23 2019 12:00AM |
| Credit: | RedTeam Pentesting GmbH. |
| Vulnerable: |
Cisco RV325 Dual Gigabit WAN VPN Router 1.4.2.19 Cisco RV325 Dual Gigabit WAN VPN Router 1.4.2.18 Cisco RV325 Dual Gigabit WAN VPN Router 1.4.2.17 Cisco RV325 Dual Gigabit WAN VPN Router 1.4.2.16 Cisco RV325 Dual Gigabit WAN VPN Router 1.4.2.15 Cisco RV320 Dual Gigabit WAN VPN Router 1.4.2.19 Cisco RV320 Dual Gigabit WAN VPN Router 1.4.2.18 Cisco RV320 Dual Gigabit WAN VPN Router 1.4.2.17 Cisco RV320 Dual Gigabit WAN VPN Router 1.4.2.16 Cisco RV320 Dual Gigabit WAN VPN Router 1.4.2.15 |
| Not Vulnerable: |
Cisco RV325 Dual Gigabit WAN VPN Router 1.4.2.20 Cisco RV320 Dual Gigabit WAN VPN Router 1.4.2.20 |
Discussion
Cisco RV320 and RV325 Routers CVE-2019-1652 Remote Command Injection Vulnerability
Cisco RV320 and RV325 Routers are prone to a remote command-injection vulnerability.
Successfully exploiting this issue may allow an attacker to execute arbitrary commands with root privileges in the context of the affected device.
This issue is being tracked by Cisco Bug ID CSCvm78058.
The following version of Cisco RV320 and RV325 Dual Gigabit WAN VPN Routers are vulnerable:
Cisco RV320 Dual Gigabit WAN VPN Router version 1.4.2.15 through 1.4.2.19.
Cisco RV325 Dual Gigabit WAN VPN Router version 1.4.2.15 through 1.4.2.19.
Cisco RV320 and RV325 Routers are prone to a remote command-injection vulnerability.
Successfully exploiting this issue may allow an attacker to execute arbitrary commands with root privileges in the context of the affected device.
This issue is being tracked by Cisco Bug ID CSCvm78058.
The following version of Cisco RV320 and RV325 Dual Gigabit WAN VPN Routers are vulnerable:
Cisco RV320 Dual Gigabit WAN VPN Router version 1.4.2.15 through 1.4.2.19.
Cisco RV325 Dual Gigabit WAN VPN Router version 1.4.2.15 through 1.4.2.19.
Exploit / POC
Cisco RV320 and RV325 Routers CVE-2019-1652 Remote Command Injection Vulnerability
The researcher who discovered this issue has created a proof-of-concept. Please see the references for more information.
The researcher who discovered this issue has created a proof-of-concept. Please see the references for more information.
Solution / Fix
Cisco RV320 and RV325 Routers CVE-2019-1652 Remote Command Injection Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Cisco RV320 and RV325 Routers CVE-2019-1652 Remote Command Injection Vulnerability
References:
References:
- Cisco Homepage (Cisco )
- Cisco RV320 Command Injection (RedTeam Pentesting GmbH)
- RV320 Dual Gigabit WAN VPN Router Product Page (Cisco)
- RV325 Dual Gigabit WAN VPN Router Product Page (Cisco)
- Cisco Small Business RV320 and RV325 Routers Command Injection Vulnerability (Cisco)