CVE-2019-1653 is a critical information disclosure vulnerability affecting Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers, stemming from improper access controls in the web-based management interface. With a CVSS score of 7.5 (HIGH), this vulnerability allows unauthenticated, remote attackers to retrieve sensitive configuration and diagnostic information by requesting specific URLs. This flaw is actively exploited in the wild, with readily available exploit code in Metasploit and Nuclei templates, and has garnered significant community and media attention, including reports of its use by state-sponsored actors. Organizations using these affected routers should prioritize immediate firmware updates to mitigate this high-risk vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.4.2.15CPE matchmatch criteria | cpe:2.3:o:cisco:rv320_firmware:1.4.2.15:*:*:*:*:*:*:* | ||
1.4.2.17CPE matchmatch criteria | cpe:2.3:o:cisco:rv320_firmware:1.4.2.17:*:*:*:*:*:*:* | ||
1.4.2.15CPE matchmatch criteria | cpe:2.3:o:cisco:rv325_firmware:1.4.2.15:*:*:*:*:*:*:* | ||
1.4.2.17CPE matchmatch criteria | cpe:2.3:o:cisco:rv325_firmware:1.4.2.17:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.