HIGH · 8.6

CVE-2019-1843

A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow ...

Vulnerability Description

A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to cause a reload of an affected device, resulting in a denial of service (DoS) condition. This vulnerability is due to improper validation of user-supplied data in the web-based management interface. An attacker could exploit this vulnerability by sending malicious HTTP requests to a targeted device. A successful exploit could allow the attacker to reload the device and causing a DoS condition.

CVSS Score

8.6

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
CHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
CiscoRv110W Firmware< 1.2.2.4
CiscoRv110W-
CiscoRv130W Firmware< 1.0.3.51
CiscoRv130W-
CiscoRv215W Firmware< 1.3.1.4
CiscoRv215W-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2019-1843?

CVE-2019-1843 is a vulnerability with a CVSS score of 8.6 (HIGH). A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow ...

How severe is CVE-2019-1843?

CVE-2019-1843 has been rated HIGH with a CVSS base score of 8.6/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2019-1843?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Rv110W Firmware, Cisco Rv110W, Cisco Rv130W Firmware, Cisco Rv130W, Cisco Rv215W Firmware.