Vulnerability Details CVE-2022-20708
Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of service (DoS) For more information about these vulnerabilities, see the Details section of this advisory.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.18
EPSS Ranking 94.8%
CVSS Severity
CVSS v3 Score 10.0
CVSS v2 Score 10.0
Proposed Action
A vulnerability in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code elevate privileges, execute arbitrary commands, bypass authentication and authorization protections, fetch and run unsigned software, or cause a denial of service (DoS).
Ransomware Campaign
Unknown
Products affected by CVE-2022-20708
-
-
-
-
-
cpe:2.3:o:cisco:rv340_firmware:-
-
cpe:2.3:o:cisco:rv340_firmware:1.0.0.14
-
cpe:2.3:o:cisco:rv340_firmware:1.0.03.19
-
cpe:2.3:o:cisco:rv340_firmware:1.0.03.21
-
cpe:2.3:o:cisco:rv340_firmware:1.0.03.24
-
cpe:2.3:o:cisco:rv340_firmware:1.0.1.14
-
cpe:2.3:o:cisco:rv340_firmware:1.0.1.20
-
cpe:2.3:o:cisco:rv340_firmware:1.0.3.20
-
cpe:2.3:o:cisco:rv340_firmware:1.0.3.21
-
cpe:2.3:o:cisco:rv340w_firmware:-
-
cpe:2.3:o:cisco:rv340w_firmware:1.0.0.14
-
cpe:2.3:o:cisco:rv340w_firmware:1.0.03.19
-
cpe:2.3:o:cisco:rv340w_firmware:1.0.03.21
-
cpe:2.3:o:cisco:rv340w_firmware:1.0.03.24
-
cpe:2.3:o:cisco:rv340w_firmware:1.0.1.14
-
cpe:2.3:o:cisco:rv340w_firmware:1.0.1.20
-
cpe:2.3:o:cisco:rv340w_firmware:1.0.3.20
-
cpe:2.3:o:cisco:rv340w_firmware:1.0.3.21
-
cpe:2.3:o:cisco:rv345_firmware:-
-
cpe:2.3:o:cisco:rv345_firmware:1.0.0.14
-
cpe:2.3:o:cisco:rv345_firmware:1.0.03.19
-
cpe:2.3:o:cisco:rv345_firmware:1.0.03.21
-
cpe:2.3:o:cisco:rv345_firmware:1.0.03.24
-
cpe:2.3:o:cisco:rv345_firmware:1.0.1.14
-
cpe:2.3:o:cisco:rv345_firmware:1.0.1.20
-
cpe:2.3:o:cisco:rv345_firmware:1.0.3.20
-
cpe:2.3:o:cisco:rv345_firmware:1.0.3.21
-
cpe:2.3:o:cisco:rv345p_firmware:-
-
cpe:2.3:o:cisco:rv345p_firmware:1.0.0.14
-
cpe:2.3:o:cisco:rv345p_firmware:1.0.03.19
-
cpe:2.3:o:cisco:rv345p_firmware:1.0.03.21
-
cpe:2.3:o:cisco:rv345p_firmware:1.0.03.24
-
cpe:2.3:o:cisco:rv345p_firmware:1.0.1.14
-
cpe:2.3:o:cisco:rv345p_firmware:1.0.1.20
-
cpe:2.3:o:cisco:rv345p_firmware:1.0.3.20
-
cpe:2.3:o:cisco:rv345p_firmware:1.0.3.21