Severity
High
Analysis Summary
CVE-2021-1602
Cisco Small Business RV160 and RV260 Series VPN Routers could allow a remote authenticated attacker to execute arbitrary commands on the system, caused by an unspecified flaw. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system.
Impact
- Code Execution
- Unauthorized Access
Affected Vendors
Cisco
Affected Products
- Cisco RV260P VPN Router with PoE
- Cisco RV160W Wireless-AC VPN Routers
- Cisco RV260 VPN Routers
Remediation
Refer to Cisco Security Advisory for the patch, upgrade, or suggested workaround information.