Vulnerability

Cisco Will Not Fix Authentication Bypass Flaw Affecting Multiple Small Business VPN Routers

The vulnerability tracked as (CVE-2022-20923) in the IPSec VPN Server authentication functionality of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers will not be patched since the devices have reached end-of-life (EoL).

According to the security advisory published by Cisco, “It allows an unauthenticated, remote attacker to bypass authentication controls and access the IPSec VPN network”.

The vulnerability stems due to the improper implementation of the password validation algorithm. So an attacker could exploit this vulnerability by logging in to the VPN from an affected device with “crafted credentials”.

In this case, the attackers gain privileges that are the same level as an administrative user, depending on the crafted credentials that are used.

Cisco has not released patches that address this vulnerability. There are no workarounds that address this vulnerability.

Affected Products

This vulnerability affects the Cisco Small Business RV Series Routers if the IPSec VPN Server feature is enabled:

  • RV110W Wireless-N VPN Firewall
  • RV130 VPN Router
  • RV130W Wireless-N Multifunction VPN Router
  • RV215W Wireless-N VPN Router

 Log in to the web-based management interface and choose VPN > IPSec VPN Server > Setup, to find out whether the IPSec VPN Server feature is configured on a device.

Upgrade To Newer Router Models

Cisco has not released and will not release software updates to address the vulnerability described in this advisory”.

“Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers have entered the end-of-life process”, the company added.

Cisco advises to migrate to Cisco Small Business RV132W, RV160, or RV160W Routers. Further, on a regular basis see the advisories for Cisco products, which are available from the Cisco Security Advisories page, to determine exposure and a complete upgrade solution. Notably, CVE-2022-20923 is not the first severe security vulnerability affecting these EoL router models that Cisco left unpatched in recent years.

Download Free SWG – Secure Web Filtering – E-book

Guru Baran

Gurubaran KS is a cybersecurity analyst, and Journalist with a strong focus on emerging threats and digital defense strategies. He is the Co-Founder and Editor-in-Chief of Cyber Security News, where he leads editorial coverage on global cybersecurity developments.

Recent Posts

Hackers Target AI Infrastructure With RCE, Prompt Injection and API Key Theft

Hackers are actively probing AI systems, turning exposed gateways and agent tools into routes for…

4 hours ago

Hackers Make Phishing Pages Change Their Code Every Time Someone Opens Them

Hackers are making some phishing pages harder to track by changing the code delivered to…

4 hours ago

Iran-Linked Hackers Reportedly Knock UK Power Plant Offline for Four Days

A cyber incident reportedly forced a British power plant to halt operations for about four…

5 hours ago

Russian Hackers Use New HOOKEDGE Malware to Spy on European Defense and Diplomatic Targets

Russian hackers have used a new backdoor called HOOKEDGE to target defense manufacturers, government bodies,…

6 hours ago

Ransomware Gang Claims AI Can Analyze 700GB of Stolen Data Every Hour

TITAN ransomware is pairing file encryption with an ambitious claim: artificial intelligence that can sort…

6 hours ago

Hackers Compromise Hundreds of WordPress Sites to Deploy Amatera Stealer via ClickFix

A fake student resume is being used to place a remote-access tool on researchers’ Windows…

7 hours ago