Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2019-1859

24
FAUCET Score

CVE-2019-1859 is a vulnerability in Cisco Small Business Switches that allows an attacker to bypass client-side certificate authentication in the SSH process, reverting to password authentication. This high-severity vulnerability (CVSS 7.2) has a low attack complexity and could lead to full administrative access if default credentials are not changed. There are no known public exploits, Metasploit modules, or significant community discussion, indicating a low current exploitation risk. While no workarounds exist, disabling client-side certificate authentication and using strong passwords is recommended.

Impacted Technologies

VendorProductVersion(s)CPE
< 1.4.10.6CPE matchmatch criteria
cpe:2.3:o:cisco:sg200-50_firmware:*:*:*:*:*:*:*:*
< 1.4.10.6CPE matchmatch criteria
cpe:2.3:o:cisco:sg200-50p_firmware:*:*:*:*:*:*:*:*
< 1.4.10.6CPE matchmatch criteria
cpe:2.3:o:cisco:sg200-50fp_firmware:*:*:*:*:*:*:*:*
< 1.4.10.6CPE matchmatch criteria
cpe:2.3:o:cisco:sg200-26_firmware:*:*:*:*:*:*:*:*
< 1.4.10.6CPE matchmatch criteria
cpe:2.3:o:cisco:sg200-26p_firmware:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.0

7.2HIGH

CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.2
Impact Score
5.9
CvssVersion
3.0

Exploit Intelligence

EPSS Score
0.85%
Probability of exploitation in next 30 days
EPSS Percentile
54.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0086 is in the 37th percentile among its peer group of 5,537 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.3 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (7)

aristavendor investigatingvia llm_extracted
ciscovendor investigatingvia nvd_reference
View patch
naturalintelligencevendor investigatingvia llm_extracted
netgearvendor investigatingvia llm_extracted
opencartvendor investigatingvia llm_extracted
payloadcmsvendor investigatingvia llm_extracted
safarivendor investigatingvia llm_extracted

Vendor Advisories (6)

netgearllm-netgear-faf863ddf9b7f6d1HIGH

Cisco Small Business Switch Security Feature Bypass

May 1, 2019
aristallm-arista-9db610e19546d7eaHIGH

Cisco Small Business Switch Security Feature Bypass

May 1, 2019
opencartllm-opencart-807af95885c62e3cHIGH

Cisco Small Business Switch Security Feature Bypass

May 1, 2019
safarillm-safari-fc846c5971ab9c47HIGH

Cisco Small Business Switch Security Feature Bypass

May 1, 2019
naturalintelligencellm-naturalintelligence-e794c0b8e1c6bf0eHIGH

Cisco Small Business Switch Security Feature Bypass

May 1, 2019
payloadcmsllm-payloadcms-22a2d9226c1b2f2fHIGH

Cisco Small Business Switch Security Feature Bypass

May 1, 2019

References

tools.cisco.com / security/center/content/CiscoSecurityAdvisory/cisco-sa-20190501-scbv
Vendor Advisory