APP: Cisco Small Business RV Series Authentication Bypass and Command Injection

This signature detects attempts to exploit a known vulnerability against Cisco Small Business RV Series. A successful attack can lead to command injection and arbitrary code execution.

Extended Description

Multiple vulnerabilities exist in the web-based management interface of Cisco Small Business RV Series Routers. A remote attacker could execute arbitrary commands or bypass authentication and upload files on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.

Short Name
APP:CISCO:RV-SERIES-CMD-INJ
Severity
Major
Recommended
True
Recommended Action
Drop
Category
APP
Keywords
Authentication Business Bypass CVE-2021-1472 CVE-2021-1473 Cisco Command Injection RV Series Small and
Release Date
02/09/2022
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3590
False Positive
Unknown
CVSS Score

7.5

Found a potential security threat?