CVE-2021-1472

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Apr 8, 2021
Updated: Nov 7, 2023
CWE ID 119
CWE ID 287

Summary

CVE-2021-1472 refers to multiple vulnerabilities discovered in the web-based management interface of Cisco Small Business RV Series Routers. These vulnerabilities allow a remote attacker to execute arbitrary commands or bypass authentication and upload files on an affected device. Successful exploitation can result in significant compromise of the affected router, potentially leading to unauthorized access or data theft. Cisco has released patches to address these vulnerabilities, and administrators are strongly advised to apply the updates as soon as possible to protect their networks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Cisco Rv340 Firmware
  • Cisco Rv340w Firmware
  • Cisco Rv345 Firmware
  • Cisco Rv345p Firmware

Affected Vendors

  • Cisco Systems Inc