peter bassill · operator
$ cve CVE-2014-0659 JSON

CVE-2014-0659 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 73.8% (pctl 99)

Patch early

A public exploit exists.

Description

The Cisco WAP4410N access point with firmware through 2.0.6.1, WRVS4400N router with firmware 1.x through 1.1.13 and 2.x through 2.0.2.1, and RVS4000 router with firmware through 2.0.3.2 allow remote attackers to read credential and configuration data, and execute arbitrary commands, via requests to the test interface on TCP port 32764, aka Bug IDs CSCum37566, CSCum43693, CSCum43700, and CSCum43685.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS73.83% — more likely to be exploited than 99% of all CVEs
WeaknessCWE-78
On CISA KEVno
Public exploityes
Published2014-01-12
Last modified2026-06-17

Affected (6)

VendorProduct
ciscorvs4000
ciscorvs4000 firmware
ciscowap4410n
ciscowap4410n firmware
ciscowrvs4400n
ciscowrvs4400n firmware

Public exploits

SourceTitleDate
exploit-dbSerComm Device - Remote Code Execution (Metasploit)2014-01-14

References

→ the Explorer  ·  watch your stack  ·  NVD