Boletines de Vulnerabilidades

Cisco Small Business Router Password Disclosure Vulnerability


Información sobre el sistema

   
Software afectado Cisco

Descripción

Avulnerability in the web management interface of theCisco RV110W Wireless-N VPN Firewall, the Cisco RV215W Wireless-N VPNRouter, and the Cisco CVR100W Wireless-N VPN Routercould allow an unauthenticated, remote attacker to gain administrative-level access to the web management interface of the affected device.The vulnerability is due to improper handling of authentication requests by the web framework. An attacker could exploit this vulnerability by intercepting, modifying and resubmitting an

More info:

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140305-rpd?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20Small%20Business%20Router%20Password%20Disclosure%20Vulnerability&vs_k

Identificadores estándar

Propiedad Valor
CVE CVE-2014-0683.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-03-06

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT