CVE-2014-2178
Description
Cross-site request forgery (CSRF) vulnerability in the administrative web interface in the Cisco RV router firmware on RV220W devices, before 1.0.5.9 on RV120W devices, and before 1.0.4.14 on RV180 and RV180W devices allows remote attackers to hijack the authentication of administrators, aka Bug ID CSCuh87145.
Risk Information
Base Score
4.3
MODERATE
Vector
AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
EPSS Score
Exploitation Probability
0.322
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Cisco Small Business RV Series Routers HTTP Referer Header Vulnerability For Cisco Small Business RV Series Routers | NCM |
| Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2014-2178) | NCM |
Patch Details
Click to see the patches provided by ManageEngine for this CVE
| Patch ID | Patch Description |
|---|---|
| PATCH-1705925 | Security Update for Cisco Small Business RV Series Routers 1.0.3.16 |
References
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234