#RV320
Critical Warning: 'Cisco has not released software updates to address the vulnerabilities described in this advisory. There are no workarounds that address these vulnerabilities.' 👀 sec.cloudapps.cisco.com/security/cen... #cybersecurity @gate15.bsky.social
Cisco Security Advisory: Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers Vulnerabilities
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could allow a remote attacker to bypass authentication or e...
sec.cloudapps.cisco.com
March 10, 2025 at 12:03 PM
November 25, 2024 at 5:01 PM
End-of-life Cisco routers targeted by China’s Volt Typhoon group
End-of-life Cisco routers targeted by China’s Volt Typhoon group
Researches found the compromise of Cisco RV320/325 routers, which the company discontinued in 2019 but are still in use. Targets were in the U.S., U.K. and Australia.
therecord.media
January 12, 2024 at 7:05 PM
Goodbye Cisco RV320. You lasted longer than I thought you would but not as long as I'd have liked.

Any suggestions for a replacement?
September 17, 2026 at 10:52 PM
Virtually every major remote access tech is under attack rn.

It's gonna be a truly unpleasant Q4, isn't it…
October 12, 2025 at 11:44 AM
PolarEdge Botnet Exploits Cisco and Other Flaws to Hijack ASUS, QNAP, and Synology Devices

A new malware campaign has been observed targeting edge devices from Cisco, ASUS, QNAP, and Synology to rope them into a botnet named PolarEdge since at least the end of 2023. French cybersecurity company…
PolarEdge Botnet Exploits Cisco and Other Flaws to Hijack ASUS, QNAP, and Synology Devices
A new malware campaign has been observed targeting edge devices from Cisco, ASUS, QNAP, and Synology to rope them into a botnet named PolarEdge since at least the end of 2023. French cybersecurity company Sekoia said it observed the unknown threat actors leveraging CVE-2023-20118 (CVSS score: 6.5), a critical security flaw impacting Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and
shoebhakim.com
February 27, 2025 at 10:26 AM
ViciousTrap Uses Cisco Flaw to Build Global Honeypot from 5,300 Compromised Devices

Cybersecurity researchers have disclosed that a threat actor codenamed ViciousTrap has compromised nearly 5,300 unique network edge devices across 84 countries and turned them into a honeypot-lik…

#hackernews #news
ViciousTrap Uses Cisco Flaw to Build Global Honeypot from 5,300 Compromised Devices
Cybersecurity researchers have disclosed that a threat actor codenamed ViciousTrap has compromised nearly 5,300 unique network edge devices across 84 countries and turned them into a honeypot-like network. The threat actor has been observed exploiting a critical security flaw impacting Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers (CVE-2023-20118) to corral them into
thehackernews.com
May 24, 2025 at 1:01 PM
PolarEdge Botnet Exploits Cisco and Other Flaws to Hijack ASUS, QNAP, and Synology Devices

A new malware campaign has been observed targeting edge devices from Cisco, ASUS, QNAP, and Synology to rope them into a botnet named PolarEdge since at least the end of 2023.
French cyber…

#hackernews #news
PolarEdge Botnet Exploits Cisco and Other Flaws to Hijack ASUS, QNAP, and Synology Devices
A new malware campaign has been observed targeting edge devices from Cisco, ASUS, QNAP, and Synology to rope them into a botnet named PolarEdge since at least the end of 2023. French cybersecurity company Sekoia said it observed the unknown threat actors leveraging CVE-2023-20118 (CVSS score: 6.5), a critical security flaw impacting Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and
thehackernews.com
February 28, 2025 at 10:41 PM
Critical Security Flaw in Cisco Small Business Routers Exposes Devices to Attack

A significant vulnerability has been discovered in the web-based management interface of several Cisco Small Business Routers, including RV016, RV042, RV042G, RV082, RV320, and RV325. This flaw allows authenticated…
Critical Security Flaw in Cisco Small Business Routers Exposes Devices to Attack
A significant vulnerability has been discovered in the web-based management interface of several Cisco Small Business Routers, including RV016, RV042, RV042G, RV082, RV320, and RV325. This flaw allows authenticated remote attackers to execute arbitrary commands, potentially gaining full control over the affected devices. Due to improper validation of user input in HTTP packets, an attacker with valid administrative credentials can exploit this issue, elevating privileges and accessing unauthorized data.
undercodenews.com
March 4, 2025 at 9:10 AM
CISA Warns of Cisco Small Business Routers Vulnerability Exploited in Wild. The vulnerability resides in the web-based management interface of Cisco’s (EoL) RV016, RV042, RV042G, RV082, RV320, and RV325 routers.

cybersecuritynews.com/cisa-cisco-s...
March 4, 2025 at 7:19 AM
CISAは、Windows、Ciscoの脆弱性を積極的に悪用されているとタグ付けします

CISAは、CiscoおよびWindowsシステムの脆弱性を悪用する攻撃からシステムを保護するよう、米国の連邦機関に警告しました。

…

最初の欠陥(CVE-2023-20118として追跡)により、攻撃者はRV016、RV042、RV042G、RV082、RV320、およびRV325 VPNルーターで任意のコマンドを実行できます。有効な管理者資格情報が必要ですが、ルート権限を提供するCVE-2023-20025認証バイパスを連鎖させることで実現できます。
CISA tags Windows, Cisco vulnerabilities as actively exploited
CISA has warned US federal agencies to secure their systems against attacks exploiting vulnerabilities in Cisco and Windows systems.
www.bleepingcomputer.com
March 4, 2025 at 9:51 PM
📌 ViciousTrap hacker compromises 5,300 network devices in 84 countries via Cisco router flaw (CVE-2023-20118). #CyberSecurity #Cisco https://tinyurl.com/2y9qvqb7
Researchers Uncover ViciousTrap Exploiting Cisco Flaw to Build Honeypot Network
Cybersecurity researchers have revealed that a malicious actor named ViciousTrap has compromised nearly 5,300 unique network edge devices in 84 countries, turning them into a honeypot network. The actor exploited a critical security vulnerability affecting Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 routers (CVE-2023-20118).
tinyurl.com
May 25, 2025 at 7:42 PM
CISA Tags Windows, Cisco Vulnerabilities As Actively Exploited
CISA has warned U.S. federal agencies about active exploitation of vulnerabilities in Cisco VPN routers and Windows systems. "While the cybersecurity agency has tagged these flaws as actively exploited in the wild, it has yet to provide specific details regarding this malicious activity and who is behind it," adds Bleeping Computer. From the report: The first flaw (tracked as CVE-2023-20118) enables attackers to execute arbitrary commands on RV016, RV042, RV042G, RV082, RV320, and RV325 VPN routers. While it requires valid administrative credentials, this can still be achieved by chaining the CVE-2023-20025 authentication bypass, which provides root privileges. Cisco says in an advisory published in January 2023 and updated one year later that its Product Security Incident Response Team (PSIRT) is aware of CVE-2023-20025 publicly available proof-of-concept exploit code. The second security bug (CVE-2018-8639) is a Win32k elevation of privilege flaw that local attackers logged into the target system can exploit to run arbitrary code in kernel mode. Successful exploitation also allows them to alter data or create rogue accounts with full user rights to take over vulnerable Windows devices. According to a security advisory issued by Microsoft in December 2018, this vulnerability impacts client (Windows 7 or later) and server (Windows Server 2008 and up) platforms. Today, CISA added the two vulnerabilities to its Known Exploited Vulnerabilities catalog, which lists security bugs the agency has tagged as exploited in attacks. As mandated by the Binding Operational Directive (BOD) 22-01 issued in November 2021, Federal Civilian Executive Branch (FCEB) agencies now have three weeks, until March 23, to secure their networks against ongoing exploitation. Read more of this story at Slashdot.
it.slashdot.org
March 4, 2025 at 10:23 AM
セキュリティアドバイザリ:Cisco Small Business RV016、RV042、RV042G、RV082、RV320、RV325 ルータにおけるクロスサイトスクリプティングの脆弱性 CVE-2024-20362 CVSS 6.1 Medium
sec.cloudapps.cisco.com/security/cen...
Cisco Security Advisory: Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers Cross-Site Scripting Vulnerability
A vulnerability in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could allow an unauthenticated, remote attacker to conduct a cross-s...
sec.cloudapps.cisco.com
September 25, 2025 at 5:38 PM
ID: CVE-2024-20524
CVSS V3.1: MEDIUM
A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to cause an unexpected reload of an affected...
#security #infosec #cve-alert
nvd.nist.gov
October 2, 2024 at 5:16 PM
ID: CVE-2024-20523
CVSS V3.1: MEDIUM
A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to cause an unexpected reload of an affected...
#security #infosec #cve-alert
nvd.nist.gov
October 2, 2024 at 5:16 PM
ID: CVE-2024-20522
CVSS V3.1: MEDIUM
A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to cause an unexpected reload of an affected...
#security #infosec #cve-alert
nvd.nist.gov
October 2, 2024 at 5:16 PM
ID: CVE-2024-20521
CVSS V3.1: MEDIUM
A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arbitrary code as the root user....
#security #infosec #cve-alert
nvd.nist.gov
October 2, 2024 at 5:16 PM
ID: CVE-2024-20520
CVSS V3.1: MEDIUM
A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arbitrary code as the root user....
#security #infosec #cve-alert
nvd.nist.gov
October 2, 2024 at 5:16 PM
ID: CVE-2024-20519
CVSS V3.1: MEDIUM
A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arbitrary code as the root user....
#security #infosec #cve-alert
nvd.nist.gov
October 2, 2024 at 5:16 PM