peter bassill · operator
$ cve CVE-2019-1653 JSON

CVE-2019-1653 KEV EXPLOIT

7.5
HIGH · CVSS 3.1 · EPSS 99.9% (pctl 100)

Patch first

On CISA KEV — known exploited in the wild, due 2022-05-03.

Description

A vulnerability in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers could allow an unauthenticated, remote attacker to retrieve sensitive information. The vulnerability is due to improper access controls for URLs. An attacker could exploit this vulnerability by connecting to an affected device via HTTP or HTTPS and requesting specific URLs. A successful exploit could allow the attacker to download the router configuration or detailed diagnostic information. Cisco has released firmware updates that address this vulnerability.

Scoring

CVSS7.5 (HIGH, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS99.88% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-284
On CISA KEVyes — remediate by 2022-05-03
Public exploityes
Published2019-01-24
Last modified2026-06-17

CISA KEV

NameCisco Small Business RV320 and RV325 Routers Information Disclosure Vulnerability
Added2021-11-03
Due2022-05-03
Vendor / productCisco / Small Business RV320 and RV325 Routers
Ransomware usenone reported

Affected (4)

VendorProduct
ciscorv320
ciscorv320 firmware
ciscorv325
ciscorv325 firmware

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD