CVE-2019-1652 is a critical command injection vulnerability affecting Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers, stemming from improper input validation in the web-based management interface. An authenticated, remote attacker can exploit this to execute arbitrary commands as root on the underlying Linux shell. With a CVSS score of 7.2 (HIGH), this vulnerability is easily exploitable over the network with low complexity, leading to complete compromise of confidentiality, integrity, and availability. This CVE is actively exploited in the wild, with public exploit code available (including Metasploit modules), and has garnered significant community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 1.4.2.15, < 1.4.2.22CPE matchmatch criteria | cpe:2.3:o:cisco:rv320_firmware:*:*:*:*:*:*:*:* | ||
>= 1.4.2.15, < 1.4.2.22CPE matchmatch criteria | cpe:2.3:o:cisco:rv325_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.3 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.