imPC@ndo IT

Tracker / CVE-2014-0659

CVE-2014-0659

High 10.0

The Cisco WAP4410N access point with firmware through 2.0.6.1, WRVS4400N router with firmware 1.x through 1.1.13 and 2.x through 2.0.2.1, and RVS4000 router with firmware through 2.0.3.2 allow remote attackers to read credential and configuration data, and execute arbitrary commands, via requests to the test interface on TCP port 32764, aka Bug IDs CSCum37566, CSCum43693, CSCum43700, and CSCum43685.

Affected products and versions

cisco rvs4000
cisco rvs4000_firmware
cisco rvs4000_firmware · … → 2.0.3.2
cisco wap4410n
cisco wap4410n_firmware
cisco wap4410n_firmware · … → 2.0.6.1
cisco wrvs4400n
cisco wrvs4400n_firmware

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References