CVE-2022-20749 CRITICAL

CVE-2022-20749: Cisco Small Business RV Series Routers Vulnerabilities

Vendor Cisco
Product Cisco Small Business RV Series Router Firmware
Weakness CWE-121
Published February 10, 2022
Last update November 6, 2024

CVSS base score

10.0/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction None
Confidentiality High
Integrity High

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

What the vulnerability does

01Description

Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of service (DoS) For more information about these vulnerabilities, see the Details section of this advisory.

Key dates

02Disclosure timeline

February 10, 2022 CVE published
November 6, 2024 Record updated