Vulnerabilities
Summary — last 7 days
New vulnerabilities2,774▼ 324 vs. last week
Critical / high1,284▼ 239 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)214▼ 107 vs. last week
41 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Analyzed | Critical (10) | 99% | ⚠ Active exploitation💥 Exploit | Erlang/otpCisco Confd BasicCisco Network Services OrchestratorCisco Cloud Native Broadband Network Gateway+19 | 4/16/2025 | 6/17/2026 | Erlang/OTP is a set of libraries for the Erlang programming language. Prior to versions OTP-27.3.3, OTP-26.2.5.11, and OTP-25.3.2.20, a SSH server may allow an attacker to perform unauthenticated remote code execution (RCE). By exploiting a flaw in SSH protocol message handling, a malicious actor could gain… | |
| Analyzed | High (7.2) | 0.62% | — | Cisco Rv340 Dual WAN Gigabit VPN Router FirmwareCisco Rv340w Dual WAN Gigabit Wireless-ac VPN Router FirmwareCisco Rv345 Dual WAN Gigabit VPN Router FirmwareCisco Rv345p Dual WAN Gigabit POE VPN Router Firmware | 10/2/2024 | 6/17/2026 | A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device. In order to exploit this vulnerability, the attacker must have valid admin… | |
| Analyzed | High (8.8) | 0.59% | — | Cisco Rv340 Dual WAN Gigabit VPN Router FirmwareCisco Rv340w Dual WAN Gigabit Wireless-ac VPN Router FirmwareCisco Rv345 Dual WAN Gigabit VPN Router FirmwareCisco Rv345p Dual WAN Gigabit POE VPN Router Firmware | 10/2/2024 | 6/17/2026 | A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to elevate privileges on an affected device. This vulnerability exists because the web-based management interface discloses sensitive… | |
| Deferred | Medium (6.5) | 0.86% | — | Cisco Rv340AICisco Rv345AI | 7/17/2024 | 6/17/2026 | A vulnerability in the upload module of Cisco RV340 and RV345 Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device. This vulnerability is due to insufficient boundary checks when processing specific HTTP requests. An attacker could exploit this… | |
| Modified | Critical (9.8) | 90% | 💥 Exploit | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 4/5/2023 | 6/17/2026 | A vulnerability in the web-based management interface of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an unauthenticated, remote attacker to upload arbitrary files to an affected device. This vulnerability is due to insufficient authorization enforcement mechanisms in the context of… | |
| Modified | High (7.2) | 0.68% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 1/20/2023 | 6/17/2026 | A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code or cause the web-based management process on the device to restart unexpectedly, resulting in a denial of… | |
| Modified | Critical (9.8) | 1.9% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 8/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an unauthenticated, remote attacker to execute arbitrary code or cause a denial of service (DoS) condition on an affected device. For more information about these vulnerabilities, see the Details section of this… | |
| Modified | Critical (10) | 1.9% | — | Cisco Rv160 FirmwareCisco Rv160w FirmwareCisco Rv260 FirmwareCisco Rv260p Firmware+5 | 8/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an unauthenticated, remote attacker to execute arbitrary code or cause a denial of service (DoS) condition on an affected device. For more information about these vulnerabilities, see the Details section of this… | |
| Modified | Critical (9) | 3.3% | — | Cisco Rv160 FirmwareCisco Rv160w FirmwareCisco Rv260 FirmwareCisco Rv260p Firmware+5 | 8/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an unauthenticated, remote attacker to execute arbitrary code or cause a denial of service (DoS) condition on an affected device. For more information about these vulnerabilities, see the Details section of this… | |
| Modified | High (7.2) | 2.0% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 5/4/2022 | 6/17/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 and RV345 Routers could allow an authenticated, remote attacker to inject and execute arbitrary commands on the underlying operating system of an affected device. These vulnerabilities are due to insufficient validation of… | |
| Modified | High (7.2) | 1.7% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 5/4/2022 | 6/17/2026 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 and RV345 Routers could allow an authenticated, remote attacker to inject and execute arbitrary commands on the underlying operating system of an affected device. These vulnerabilities are due to insufficient validation of… | |
| Modified | High (7.2) | 2.2% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 5/4/2022 | 6/17/2026 | A vulnerability in web-based management interface of Cisco Small Business RV340 and RV345 Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by… | |
| Modified | Critical (9.8) | 4.0% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Modified | Critical (9.8) | 3.0% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Modified | Critical (9.8) | 4.9% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Modified | Medium (5.3) | 2.4% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Modified | High (7.5) | 3.8% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Analyzed | High (8) | 15% | ⚠ Active exploitation | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Modified | High (7.3) | 75% | 💥 Exploit | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Modified | High (8.1) | 5.6% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware+5 | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Modified | Critical (9.8) | 80% | 💥 Exploit | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware+5 | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Modified | Medium (4.8) | 2.3% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware+5 | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Analyzed | High (8) | 9.2% | ⚠ Active exploitation | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware+5 | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Modified | High (7.2) | 4.6% | — | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware+5 | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… | |
| Analyzed | High (7.8) | 9.7% | ⚠ Active exploitation | Cisco Rv340 FirmwareCisco Rv340w FirmwareCisco Rv345 FirmwareCisco Rv345p Firmware | 2/10/2022 | 6/17/2026 | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of… |