CVE-2022-20708
Cisco Small Business RV Series Routers Vulnerabilities
In short
Multiple critical flaws in Cisco Small Business routers (RV160, RV260, RV340, RV345) allow attackers to take complete control of the device by executing code, bypassing security checks, or crashing the system.
Technical detail
These vulnerabilities span multiple attack vectors including stack buffer overflows (CWE-121), authentication bypass, and unsigned code execution. An attacker with network access can exploit these flaws to achieve remote code execution, privilege escalation, or denial of service without requiring valid credentials or user interaction.
Summary generated and translated by AI from the official description.
Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of service (DoS) For more information about these vulnerabilities, see the Details section of this advisory.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Affected products
Cisco · Cisco Small Business RV Series Router FirmwareWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →