Vulnerability Details CVE-2016-1397
Buffer overflow in the web-based management interface on Cisco RV110W devices with firmware before 1.2.1.7, RV130W devices with firmware before 1.0.3.16, and RV215W devices with firmware before 1.3.0.8 allows remote authenticated users to cause a denial of service (device reload) via crafted configuration commands in an HTTP request, aka Bug ID CSCux82523.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 76.4%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 6.8
Products affected by CVE-2016-1397
-
cpe:2.3:h:cisco:rv110w_wireless-n_vpn_firewall:-
-
cpe:2.3:h:cisco:rv130w_wireless-n_multifunction_vpn_router:-
-
cpe:2.3:h:cisco:rv215w_wireless-n_vpn_router:-
-
cpe:2.3:o:cisco:rv110w_wireless-n_vpn_firewall_firmware:1.1.0.9
-
cpe:2.3:o:cisco:rv110w_wireless-n_vpn_firewall_firmware:1.2.0.10
-
cpe:2.3:o:cisco:rv110w_wireless-n_vpn_firewall_firmware:1.2.0.9
-
cpe:2.3:o:cisco:rv110w_wireless-n_vpn_firewall_firmware:1.2.1.4
-
cpe:2.3:o:cisco:rv130w_wireless-n_multifunction_vpn_router_firmware:1.0.0.21
-
cpe:2.3:o:cisco:rv130w_wireless-n_multifunction_vpn_router_firmware:1.0.1.3
-
cpe:2.3:o:cisco:rv130w_wireless-n_multifunction_vpn_router_firmware:1.0.2.7
-
cpe:2.3:o:cisco:rv215w_wireless-n_vpn_router_firmware:1.1.0.5
-
cpe:2.3:o:cisco:rv215w_wireless-n_vpn_router_firmware:1.1.0.6
-
cpe:2.3:o:cisco:rv215w_wireless-n_vpn_router_firmware:1.2.0.14
-
cpe:2.3:o:cisco:rv215w_wireless-n_vpn_router_firmware:1.2.0.15
-
cpe:2.3:o:cisco:rv215w_wireless-n_vpn_router_firmware:1.3.0.7