The web management interface on the Cisco RV110W firewall with firmware 1.2.0.9 and earlier, RV215W router with firmware 1.1.0.5 and earlier, and CVR100W router with firmware 1.0.1.19 and earlier does not prevent replaying of modified authentication requests, which allows remote attackers to obtain administrative access by leveraging the ability to intercept requests, aka Bug IDs CSCul94527, CSCum86264, and CSCum86275.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: cisco
Published: 2014-03-06T11:00:00
Updated: 2024-08-06T09:27:19.104Z
Reserved: 2014-01-02T00:00:00
Link: CVE-2014-0683
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-03-06T11:55:05.287
Modified: 2024-11-21T02:02:39.287
Link: CVE-2014-0683
Redhat
No data.