Cisco Will Not Fix Authentication Bypass Flaw Affecting Multiple Small Business VPN Routers

Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

Cisco Will Not Fix Authentication Bypass Flaw Affecting Multiple Small Business VPN Routers

Post by Shane1145 »

The vulnerability tracked as (CVE-2022-20923) in the IPSec VPN Server authentication functionality of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers will not be patched since the devices have reached end-of-life (EoL).

According to the security advisory published by Cisco, “It allows an unauthenticated, remote attacker to bypass authentication controls and access the IPSec VPN network”.

https://cybersecuritynews.com/cisco-wil ... pass-flaw/
Post Reply