{"advisories":[{"id":"EUVD-2019-6279","source":"euvd","title":"A vulnerability in the web-based management interface of certain Cisco Small Business RV Series Routers could allow an authenticated, remote attacker to execute arbitrary commands with root privileges. The attacker must have either a valid credential or an active session token. The vulnerability is due to lack of input validation of the HTTP payload. An attacker could exploit this vulnerability by sending a malicious HTTP request to the web-based management interface of the targeted device. A successful exploit could allow the attacker to execute commands with root privileges.","url":"https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-6279"}],"cve":"CVE-2019-15271","epss":{"score":0.05488},"kev":{"dateAdded":"2022-06-08T00:00:00+00:00","dueDate":"2022-06-22T00:00:00+00:00"},"mitre":{"cpes":[],"created":"2019-11-26T03:12:26.649000+00:00","description":"A vulnerability in the web-based management interface of certain Cisco Small Business RV Series Routers could allow an authenticated, remote attacker to execute arbitrary commands with root privileges. The attacker must have either a valid credential or an active session token. The vulnerability is due to lack of input validation of the HTTP payload. An attacker could exploit this vulnerability by sending a malicious HTTP request to the web-based management interface of the targeted device. A successful exploit could allow the attacker to execute commands with root privileges.","metrics":{"cvssV2_0":{},"cvssV3_0":{"score":8.8,"vector":"CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"},"cvssV3_1":{},"cvssV4_0":{}},"mitre_repo_path":"cves/2019/15xxx/CVE-2019-15271.json","references":["https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20191106-sbrv-cmd-x"],"title":"Cisco Small Business RV016, RV042, RV042G, and RV082 Routers Arbitrary Command Execution Vulnerability","updated":"2025-10-21T23:35:57.315000+00:00","vendors":[],"weaknesses":["CWE-502"]},"nvd":{"cpes":["cpe:2.3:h:cisco:rv016_multi-wan_vpn:-:*:*:*:*:*:*:*","cpe:2.3:h:cisco:rv042_dual_wan_vpn:-:*:*:*:*:*:*:*","cpe:2.3:h:cisco:rv042g_dual_gigabit_wan_vpn:-:*:*:*:*:*:*:*","cpe:2.3:h:cisco:rv082_dual_wan_vpn:-:*:*:*:*:*:*:*","cpe:2.3:o:cisco:rv016_multi-wan_vpn_firmware:*:*:*:*:*:*:*:*","cpe:2.3:o:cisco:rv042_dual_wan_vpn_firmware:*:*:*:*:*:*:*:*","cpe:2.3:o:cisco:rv042g_dual_gigabit_wan_vpn_firmware:*:*:*:*:*:*:*:*","cpe:2.3:o:cisco:rv082_dual_wan_vpn_firmware:*:*:*:*:*:*:*:*"],"created":"2019-11-26T03:15:11.050000+00:00","description":"A vulnerability in the web-based management interface of certain Cisco Small Business RV Series Routers could allow an authenticated, remote attacker to execute arbitrary commands with root privileges. The attacker must have either a valid credential or an active session token. The vulnerability is due to lack of input validation of the HTTP payload. An attacker could exploit this vulnerability by sending a malicious HTTP request to the web-based management interface of the targeted device. A successful exploit could allow the attacker to execute commands with root privileges.","metrics":{"cvssV2_0":{"score":9.0,"vector":"AV:N/AC:L/Au:S/C:C/I:C/A:C"},"cvssV3_0":{"score":8.8,"vector":"CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"},"cvssV3_1":{"score":8.8,"vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"},"cvssV4_0":{}},"nvd_repo_path":"2019/CVE-2019-15271.json","references":["https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20191106-sbrv-cmd-x","https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-15271"],"title":null,"updated":"2026-06-17T02:19:59.500000+00:00","vendors":["cisco","cisco$PRODUCT$rv016_multi-wan_vpn","cisco$PRODUCT$rv016_multi-wan_vpn_firmware","cisco$PRODUCT$rv042_dual_wan_vpn","cisco$PRODUCT$rv042_dual_wan_vpn_firmware","cisco$PRODUCT$rv042g_dual_gigabit_wan_vpn","cisco$PRODUCT$rv042g_dual_gigabit_wan_vpn_firmware","cisco$PRODUCT$rv082_dual_wan_vpn","cisco$PRODUCT$rv082_dual_wan_vpn_firmware"],"weaknesses":["CWE-502"]},"opencve":{"changes":[{"created":"2024-11-12T21:15:00+00:00","data":[{"details":{"added":{"kev":{"dateAdded":"2022-06-08"},"ssvc":{"options":{"Automatable":"no","Exploitation":"active","Technical Impact":"total"},"version":"2.0.3"}},"removed":{},"updated":{}},"type":"metrics"}],"id":"8dc6e6dc-990b-4306-87a9-4da0ba9fc749"},{"created":"2025-07-12T13:45:00+00:00","data":[{"details":{"added":{},"removed":{},"updated":{"epss":{"new":{"score":0.11421},"old":{"score":0.10945}}}},"type":"metrics"}],"id":"b2fb1f7f-3273-473f-b292-ada75af4b978"},{"created":"2025-07-14T13:45:00+00:00","data":[{"details":{"added":{},"removed":{},"updated":{"epss":{"new":{"score":0.09825},"old":{"score":0.11421}}}},"type":"metrics"}],"id":"cd676888-9e3b-4d4e-adc5-fc744f0cdb06"},{"created":"2025-10-21T19:30:00+00:00","data":[{"details":{"added":["https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-15271"],"removed":[]},"type":"references"}],"id":"ce036801-a355-4cec-9388-08847fc41325"},{"created":"2025-10-21T20:30:00+00:00","data":[{"details":{"added":[],"removed":["https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-15271"]},"type":"references"}],"id":"46eadfac-d766-4c44-b502-8f485be5ba1d"},{"created":"2025-10-22T00:30:00+00:00","data":[{"details":{"added":["https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-15271"],"removed":[]},"type":"references"}],"id":"f1fa8788-26ba-4c71-a70e-edf3528cfcfc"}],"cpes":{"data":["cpe:2.3:h:cisco:rv016_multi-wan_vpn:-:*:*:*:*:*:*:*","cpe:2.3:h:cisco:rv042_dual_wan_vpn:-:*:*:*:*:*:*:*","cpe:2.3:h:cisco:rv042g_dual_gigabit_wan_vpn:-:*:*:*:*:*:*:*","cpe:2.3:h:cisco:rv082_dual_wan_vpn:-:*:*:*:*:*:*:*","cpe:2.3:o:cisco:rv016_multi-wan_vpn_firmware:*:*:*:*:*:*:*:*","cpe:2.3:o:cisco:rv042_dual_wan_vpn_firmware:*:*:*:*:*:*:*:*","cpe:2.3:o:cisco:rv042g_dual_gigabit_wan_vpn_firmware:*:*:*:*:*:*:*:*","cpe:2.3:o:cisco:rv082_dual_wan_vpn_firmware:*:*:*:*:*:*:*:*"],"providers":["nvd"]},"created":{"data":"2019-11-26T03:12:26.649000+00:00","provider":"mitre"},"description":{"data":"A vulnerability in the web-based management interface of certain Cisco Small Business RV Series Routers could allow an authenticated, remote attacker to execute arbitrary commands with root privileges. The attacker must have either a valid credential or an active session token. The vulnerability is due to lack of input validation of the HTTP payload. An attacker could exploit this vulnerability by sending a malicious HTTP request to the web-based management interface of the targeted device. A successful exploit could allow the attacker to execute commands with root privileges.","provider":"mitre"},"metrics":{"cvssV2_0":{"data":{"score":9.0,"vector":"AV:N/AC:L/Au:S/C:C/I:C/A:C"},"provider":"nvd"},"cvssV3_0":{"data":{"score":8.8,"vector":"CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"},"provider":"mitre"},"cvssV3_1":{"data":{"score":8.8,"vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"},"provider":"nvd"},"cvssV4_0":{"data":{},"provider":null},"epss":{"data":{"score":0.05488},"provider":"first"},"kev":{"data":{"dateAdded":"2022-06-08T00:00:00+00:00","dueDate":"2022-06-22T00:00:00+00:00"},"provider":"cisa"},"ssvc":{"data":{"options":{"Automatable":"no","Exploitation":"active","Technical Impact":"total"},"version":"2.0.3"},"provider":"vulnrichment"},"threat_severity":{"data":null,"provider":null}},"references":{"data":["https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20191106-sbrv-cmd-x","https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-15271"],"providers":["mitre","nvd","vulnrichment"]},"title":{"data":"Cisco Small Business RV016, RV042, RV042G, and RV082 Routers Arbitrary Command Execution Vulnerability","provider":"mitre"},"updated":{"data":"2025-10-28T13:54:30.627000+00:00","provider":"nvd"},"vendors":{"data":["cisco","cisco$PRODUCT$rv016_multi-wan_vpn","cisco$PRODUCT$rv016_multi-wan_vpn_firmware","cisco$PRODUCT$rv042_dual_wan_vpn","cisco$PRODUCT$rv042_dual_wan_vpn_firmware","cisco$PRODUCT$rv042g_dual_gigabit_wan_vpn","cisco$PRODUCT$rv042g_dual_gigabit_wan_vpn_firmware","cisco$PRODUCT$rv082_dual_wan_vpn","cisco$PRODUCT$rv082_dual_wan_vpn_firmware"],"providers":["nvd"]},"weaknesses":{"data":["CWE-502"],"providers":["mitre","nvd"]}},"vulnrichment":{"cpes":[],"created":"2019-11-26T03:12:26.649000+00:00","description":"A vulnerability in the web-based management interface of certain Cisco Small Business RV Series Routers could allow an authenticated, remote attacker to execute arbitrary commands with root privileges. The attacker must have either a valid credential or an active session token. The vulnerability is due to lack of input validation of the HTTP payload. An attacker could exploit this vulnerability by sending a malicious HTTP request to the web-based management interface of the targeted device. A successful exploit could allow the attacker to execute commands with root privileges.","metrics":{"cvssV2_0":{},"cvssV3_0":{},"cvssV3_1":{},"cvssV4_0":{},"kev":{"dateAdded":"2022-06-08"},"ssvc":{"options":{"Automatable":"no","Exploitation":"active","Technical Impact":"total"},"version":"2.0.3"}},"references":["https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-15271"],"title":"Cisco Small Business RV016, RV042, RV042G, and RV082 Routers Arbitrary Command Execution Vulnerability","updated":"2024-11-08T16:06:07.400000+00:00","vendors":[],"vulnrichment_repo_path":"2019/15xxx/CVE-2019-15271.json","weaknesses":[]}}