Vulnerabilities
Summary — last 7 days
New vulnerabilities2,774▼ 317 vs. last week
Critical / high1,288▼ 233 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)214▼ 107 vs. last week
41 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Analyzed | Critical (9.8) | 5.7% | ⚠ Active exploitation | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware+5 | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Analyzed | Critical (9.8) | 72% | ⚠ Active exploitation💥 Exploit | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Modified | Medium (6.7) | 0.29% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 5/6/2021 | 6/17/2026 | A vulnerability in the internal message processing of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, local attacker to run arbitrary commands with root privileges on the underlying operating system (OS). This vulnerability exists because an internal messaging service… | |
| Modified | Critical (9.8) | 64% | 💥 Exploit | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 4/8/2021 | 6/17/2026 | Multiple vulnerabilities exist in the web-based management interface of Cisco Small Business RV Series Routers. A remote attacker could execute arbitrary commands or bypass authentication and upload files on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. | |
| Modified | Critical (9.8) | 72% | 💥 Exploit | Cisco Rv160 FirmwareCisco Rv160w FirmwareCisco Rv260 FirmwareCisco Rv260p Firmware+5 | 4/8/2021 | 6/17/2026 | Multiple vulnerabilities exist in the web-based management interface of Cisco Small Business RV Series Routers. A remote attacker could execute arbitrary commands or bypass authentication and upload files on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. | |
| Modified | Medium (6.3) | 1.6% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 4/8/2021 | 6/17/2026 | Multiple vulnerabilities in the web-based management interface of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code with elevated privileges equivalent to the web service process on an affected device. These vulnerabilities exist… | |
| Modified | Medium (6.3) | 1.9% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 4/8/2021 | 6/17/2026 | Multiple vulnerabilities in the web-based management interface of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code with elevated privileges equivalent to the web service process on an affected device. These vulnerabilities exist… | |
| Modified | Medium (6.3) | 1.6% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 4/8/2021 | 6/17/2026 | Multiple vulnerabilities in the web-based management interface of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code with elevated privileges equivalent to the web service process on an affected device. These vulnerabilities exist… | |
| Modified | High (8.8) | 0.52% | — | Cisco Rv132w FirmwareCisco Rv134w FirmwareCisco Rv160 FirmwareCisco Rv160w Firmware+7 | 4/8/2021 | 6/17/2026 | Multiple vulnerabilities exist in the Link Layer Discovery Protocol (LLDP) implementation for Cisco Small Business RV Series Routers. An unauthenticated, adjacent attacker could execute arbitrary code or cause an affected router to leak system memory or reload. A memory leak or device reload would cause a denial of… | |
| Modified | High (7.4) | 0.43% | — | Cisco Rv132w FirmwareCisco Rv134w FirmwareCisco Rv160 FirmwareCisco Rv160w Firmware+7 | 4/8/2021 | 6/17/2026 | Multiple vulnerabilities exist in the Link Layer Discovery Protocol (LLDP) implementation for Cisco Small Business RV Series Routers. An unauthenticated, adjacent attacker could execute arbitrary code or cause an affected router to leak system memory or reload. A memory leak or device reload would cause a denial of… | |
| Modified | High (7.4) | 0.43% | — | Cisco Rv132w FirmwareCisco Rv134w FirmwareCisco Rv160 FirmwareCisco Rv160w Firmware+7 | 4/8/2021 | 6/17/2026 | Multiple vulnerabilities exist in the Link Layer Discovery Protocol (LLDP) implementation for Cisco Small Business RV Series Routers. An unauthenticated, adjacent attacker could execute arbitrary code or cause an affected router to leak system memory or reload. A memory leak or device reload would cause a denial of… | |
| Modified | Medium (6.8) | 3.1% | — | Cisco Rv340w FirmwareCisco Rv340 FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 9/4/2020 | 6/17/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attacker with administrative credentials to execute arbitrary commands on the underlying operating system (OS) as a restricted user. For more information about these… | |
| Modified | Medium (4.7) | 2.2% | — | Cisco Rv340w FirmwareCisco Rv340 FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 9/4/2020 | 6/17/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote attacker with administrative credentials to execute arbitrary commands on the underlying operating system (OS) as a restricted user. For more information about these… | |
| Modified | High (8.6) | 1.4% | — | Cisco Rv340 Dual WAN Gigabit VPN Router FirmwareCisco Rv340w Dual WAN Gigabit Wireless-ac VPN Router FirmwareCisco Rv345 Dual WAN Gigabit VPN Router FirmwareCisco Rv345p Dual WAN Gigabit POE VPN Router Firmware | 7/16/2020 | 6/17/2026 | A vulnerability in the Secure Sockets Layer (SSL) VPN feature for Cisco Small Business RV VPN Routers could allow an unauthenticated, remote attacker to cause the device to unexpectedly restart, causing a denial of service (DoS) condition. The vulnerability is due to a lack of proper input validation of HTTP requests.… | |
| Modified | Critical (9.8) | 4.2% | — | Cisco Rv340 Dual WAN Gigabit VPN Router FirmwareCisco Rv340w Dual WAN Gigabit Wireless-ac VPN Router FirmwareCisco Rv345 Dual WAN Gigabit VPN Router FirmwareCisco Rv345p Dual WAN Gigabit POE VPN Router Firmware | 7/16/2020 | 6/17/2026 | A vulnerability in the Secure Sockets Layer (SSL) VPN feature of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device or cause the device to reload, resulting in a denial of service (DoS)… | |
| Modified | Medium (5.3) | 1.7% | — | Cisco Small Business Rv340 FirmwareCisco Small Business Rv345 FirmwareCisco Small Business Rv345p Firmware | 8/17/2017 | 6/17/2026 | A vulnerability in the web interface of the Cisco RV340, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an unauthenticated, remote attacker to access sensitive data. The attacker could use this information to conduct additional reconnaissance attacks. The vulnerability is due to Cisco WebEx Meetings not… |