vendor:
RV130W
by:
Michael Alamoot
8,8
CVSS
HIGH
Injection of Counterfeit Routers
20
CWE
Product Name: RV130W
Affected Version From: RV130W 1.0.3.44
Affected Version To: RV130W 1.0.3.44
Patch Exists: YES
Related CWE: N/A
CPE: h:cisco:rv130w
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Kali Linux
2021
Cisco small business RV130W 1.0.3.44 – Inject Counterfeit Routers
This exploit allows an attacker to inject counterfeit routers into a Cisco small business RV130W 1.0.3.44 router. The exploit uses scapy to craft a VRRPv3 packet containing the IP address of the counterfeit router, and an EIGRP packet containing the IP address of the counterfeit router. The packets are then sent to the router using the scapy sendp function. This allows the attacker to inject a counterfeit router into the router's routing table.
Mitigation:
The best way to mitigate this vulnerability is to ensure that the router is running the latest version of the firmware. Additionally, the router should be configured to only accept packets from trusted sources.