ID

VAR-202102-0561


CVE

CVE-2021-1290


TITLE

plural  Cisco Small Business RV  Vulnerability in router

Trust: 0.8

sources: JVNDB: JVNDB-2021-003103

DESCRIPTION

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers could allow an unauthenticated, remote attacker to execute arbitrary code as the root user on an affected device. These vulnerabilities exist because HTTP requests are not properly validated. An attacker could exploit these vulnerabilities by sending a crafted HTTP request to the web-based management interface of an affected device. A successful exploit could allow the attacker to remotely execute arbitrary code on the device. plural Cisco Small Business RV An unspecified vulnerability exists in the router.Information is obtained, information is tampered with, and service is disrupted (DoS) It may be put into a state. Authentication is not required to exploit this vulnerability.The specific flaw exists within the web service, which listens on TCP port 443 by default. When parsing the Accept request header, the process does not properly validate a user-supplied string before using it to execute a system call

Trust: 2.34

sources: NVD: CVE-2021-1290 // JVNDB: JVNDB-2021-003103 // ZDI: ZDI-21-131 // VULMON: CVE-2021-1290

AFFECTED PRODUCTS

vendor:ciscomodel:rv260 vpn routerscope:ltversion:1.0.01.02

Trust: 1.0

vendor:ciscomodel:rv260w wireless-ac vpn routerscope:ltversion:1.0.01.02

Trust: 1.0

vendor:ciscomodel:rv260p vpn router with poescope:ltversion:1.0.01.02

Trust: 1.0

vendor:ciscomodel:rv160 vpn routerscope:ltversion:1.0.01.02

Trust: 1.0

vendor:ciscomodel:rv160w wireless-ac vpn routerscope:ltversion:1.0.01.02

Trust: 1.0

vendor:シスコシステムズmodel:rv260w wireless-ac vpn routerscope: - version: -

Trust: 0.8

vendor:シスコシステムズmodel:rv160w wireless-ac vpn routerscope: - version: -

Trust: 0.8

vendor:シスコシステムズmodel:rv160 vpn routerscope: - version: -

Trust: 0.8

vendor:シスコシステムズmodel:rv260p vpn router with poescope: - version: -

Trust: 0.8

vendor:シスコシステムズmodel:rv260 vpn routerscope: - version: -

Trust: 0.8

vendor:ciscomodel:multiple routersscope: - version: -

Trust: 0.7

sources: ZDI: ZDI-21-131 // JVNDB: JVNDB-2021-003103 // NVD: CVE-2021-1290

CVSS

SEVERITY

CVSSV2

CVSSV3

NVD: CVE-2021-1290
value: CRITICAL

Trust: 1.8

ZDI: CVE-2021-1290
value: HIGH

Trust: 0.7

CNNVD: CNNVD-202102-354
value: CRITICAL

Trust: 0.6

NVD: CVE-2021-1290
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: NONE
impactScore: NONE
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

NVD: CVE-2021-1290
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 3.9
impactScore: 5.9
version: 3.1

Trust: 1.0

NVD: CVE-2021-1290
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

ZDI: CVE-2021-1290
baseSeverity: HIGH
baseScore: 8.8
vectorString: AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: ADJACENT
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 2.8
impactScore: 5.9
version: 3.0

Trust: 0.7

sources: ZDI: ZDI-21-131 // JVNDB: JVNDB-2021-003103 // CNNVD: CNNVD-202102-354 // NVD: CVE-2021-1290

PROBLEMTYPE DATA

problemtype:CWE-472

Trust: 1.0

problemtype:Lack of information (CWE-noinfo) [NVD Evaluation ]

Trust: 0.8

sources: JVNDB: JVNDB-2021-003103 // NVD: CVE-2021-1290

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-202102-354

TYPE

other

Trust: 0.6

sources: CNNVD: CNNVD-202102-354

CONFIGURATIONS

sources: NVD: CVE-2021-1290

PATCH

title:Cisco has issued an update to correct this vulnerability.url:https://tools.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-rv160-260-rce-xzefknhf

Trust: 1.5

title:Multiple Cisco Product security vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqbyid.tag?id=140794

Trust: 0.6

title:Cisco: Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers Remote Code Execution Vulnerabilitiesurl:https://vulmon.com/vendoradvisory?qidtp=cisco_security_advisories_and_alerts_ciscoproducts&qid=cisco-sa-rv160-260-rce-xzefknhf

Trust: 0.1

title:Threatposturl:https://threatpost.com/cisco-flaws-vpn-routers-rce/163662/

Trust: 0.1

sources: ZDI: ZDI-21-131 // VULMON: CVE-2021-1290 // JVNDB: JVNDB-2021-003103 // CNNVD: CNNVD-202102-354

EXTERNAL IDS

db:NVDid:CVE-2021-1290

Trust: 3.2

db:JVNDBid:JVNDB-2021-003103

Trust: 0.8

db:ZDI_CANid:ZDI-CAN-11689

Trust: 0.7

db:ZDIid:ZDI-21-131

Trust: 0.7

db:CNNVDid:CNNVD-202102-354

Trust: 0.6

db:VULMONid:CVE-2021-1290

Trust: 0.1

sources: ZDI: ZDI-21-131 // VULMON: CVE-2021-1290 // JVNDB: JVNDB-2021-003103 // CNNVD: CNNVD-202102-354 // NVD: CVE-2021-1290

REFERENCES

url:https://tools.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-rv160-260-rce-xzefknhf

Trust: 2.4

url:https://nvd.nist.gov/vuln/detail/cve-2021-1290

Trust: 1.4

url:https://cwe.mitre.org/data/definitions/472.html

Trust: 0.1

url:https://nvd.nist.gov

Trust: 0.1

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/196085

Trust: 0.1

url:https://threatpost.com/cisco-flaws-vpn-routers-rce/163662/

Trust: 0.1

sources: ZDI: ZDI-21-131 // VULMON: CVE-2021-1290 // JVNDB: JVNDB-2021-003103 // CNNVD: CNNVD-202102-354 // NVD: CVE-2021-1290

CREDITS

T Shiomitsu

Trust: 0.7

sources: ZDI: ZDI-21-131

SOURCES

db:ZDIid:ZDI-21-131
db:VULMONid:CVE-2021-1290
db:JVNDBid:JVNDB-2021-003103
db:CNNVDid:CNNVD-202102-354
db:NVDid:CVE-2021-1290

LAST UPDATE DATE

2022-05-04T09:50:01.083000+00:00


SOURCES UPDATE DATE

db:ZDIid:ZDI-21-131date:2021-02-04T00:00:00
db:VULMONid:CVE-2021-1290date:2021-02-08T00:00:00
db:JVNDBid:JVNDB-2021-003103date:2021-10-18T08:03:00
db:CNNVDid:CNNVD-202102-354date:2021-02-09T00:00:00
db:NVDid:CVE-2021-1290date:2021-02-08T16:16:00

SOURCES RELEASE DATE

db:ZDIid:ZDI-21-131date:2021-02-04T00:00:00
db:VULMONid:CVE-2021-1290date:2021-02-04T00:00:00
db:JVNDBid:JVNDB-2021-003103date:2021-10-18T00:00:00
db:CNNVDid:CNNVD-202102-354date:2021-02-03T00:00:00
db:NVDid:CVE-2021-1290date:2021-02-04T17:15:00