10

CVE-2014-0683

The web management interface on the Cisco RV110W firewall with firmware 1.2.0.9 and earlier, RV215W router with firmware 1.1.0.5 and earlier, and CVR100W router with firmware 1.0.1.19 and earlier does not prevent replaying of modified authentication requests, which allows remote attackers to obtain administrative access by leveraging the ability to intercept requests, aka Bug IDs CSCul94527, CSCum86264, and CSCum86275.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CiscoRv110w Firmware Version <= 1.2.0.9
CiscoRv110w Version-
CiscoRv215w Firmware Version <= 1.1.0.5
CiscoRv215w Version-
CiscoCvr100w Firmware Version <= 1.0.1.19
CiscoCvr100w Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 29.44% 0.962
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C