VendorsCiscorv160w_wireless-ac_vpn_routerany version
Vulnerabilities

Cisco RV160W Wireless-AC VPN Router any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10CVEs
CVE-2021-1293
Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers Remote Code Execution Vulnerabilities
Published 2021-02-04 · Modified
10.0EPSS 0.054
CVE-2021-1294
Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers Remote Code Execution Vulnerabilities
Published 2021-02-04 · Modified
10.0EPSS 0.045
CVE-2021-1289
Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers Remote Code Execution Vulnerabilities
Published 2021-02-04 · Modified
10.0EPSS 0.042
CVE-2021-1290
Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers Remote Code Execution Vulnerabilities
Published 2021-02-04 · Modified
10.0EPSS 0.042
CVE-2021-1291
Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers Remote Code Execution Vulnerabilities
Published 2021-02-04 · Modified
10.0EPSS 0.042
CVE-2021-1295
Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers Remote Code Execution Vulnerabilities
Published 2021-02-04 · Modified
10.0EPSS 0.042
CVE-2021-1292
Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers Remote Code Execution Vulnerabilities
Published 2021-02-04 · Modified
10.0EPSS 0.042
CVE-2021-1296
Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers Arbitrary File Write Vulnerabilities
Published 2021-02-04 · Modified
9.4EPSS 0.037
CVE-2021-1297
Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers Arbitrary File Write Vulnerabilities
Published 2021-02-04 · Modified
9.4EPSS 0.037
CVE-2023-20045
A vulnerability in the web-based management interface of Cisco Small Business RV160 and RV260 Series VPN Routers could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. This vulnerability is due to insufficient validation of user input. An attacker could exploit this vulnerability by sending a crafted request to the web-based management interface of an affected device. A successful exploit could allow the attacker to execute arbitrary commands using root-level privileges on the affected device. To exploit this vulnerability, the attacker must have valid Administrator-level credentials on the affected device.
Published 2023-01-19 · Modified
7.2EPSS 0.010