Vulnerability CVE-2019-1943


Published: 2019-07-17

Description:
A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Switches software could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. The vulnerability is due to improper input validation of the parameters of an HTTP request. An attacker could exploit this vulnerability by intercepting a user's HTTP request and modifying it into a request that causes the web interface to redirect the user to a specific malicious URL. This type of vulnerability is known as an open redirect attack and is used in phishing attacks that get users to unknowingly visit malicious sites.

See advisories in our WLB2 database:
Topic
Author
Date
Med.
CISCO Small Business 200 / 300 / 500 Switches Multiple Vulnerabilities
Ramikan
15.07.2019

Type:

CWE-601

(URL Redirection to Untrusted Site ('Open Redirect'))

Vendor: Cisco
Product: Sf300-08 firmware 
Version: 1.3.7.18;
Product: Sg300-10sfp firmware 
Version: 1.3.7.18;
Product: Sg300-10 firmware 
Version: 1.3.7.18;
Product: Sf302-08pp firmware 
Version: 1.3.7.18;
Product: Sf300-48pp firmware 
Version: 1.3.7.18;
Product: Sg300-52mp firmware 
Version: 1.3.7.18;
Product: Sf300-24mp firmware 
Version: 1.3.7.18;
Product: Sg300-28 firmware 
Version: 1.3.7.18;
Product: Sg300-10mpp firmware 
Version: 1.3.7.18;
Product: Sf302-08mp firmware 
Version: 1.3.7.18;
Product: Sf300-24pp firmware 
Version: 1.3.7.18;
Product: Sg300-28p firmware 
Version: 1.3.7.18;
Product: Sg300-10pp firmware 
Version: 1.3.7.18;
Product: Sf302-08p firmware 
Version: 1.3.7.18;
Product: Sf300-48p firmware 
Version: 1.3.7.18;
Product: Sg300-52 firmware 
Version: 1.3.7.18;
Product: Sf300-24 firmware 
Version: 1.3.7.18;
Product: Sg300-20 firmware 
Version: 1.3.7.18;
Product: Sg300-10mp firmware 
Version: 1.3.7.18;
Product: Sf302-08 firmware 
Version: 1.3.7.18;
Product: Sg300-52p firmware 
Version: 1.3.7.18;
Product: Sf300-24p firmware 
Version: 1.3.7.18;
Product: Sg300-28mp firmware 
Version: 1.3.7.18;
Product: Sg300-10p firmware 
Version: 1.3.7.18;
Product: Sf302-08mpp firmware 
Version: 1.3.7.18;
Product: Sf300-48 firmware 
Version: 1.3.7.18;
Product: Sg300-28pp firmware 
Version: 1.3.7.18;
Product: Sf200-24 firmware 
Product: Sg200-26fp firmware 
Product: Sg200-08 firmware 
Product: Sg500x-48 firmware 
Product: Sg500-52 firmware 
Product: Sf200-24p firmware 
Product: Sg200-50 firmware 
Product: Sg200-10fp firmware 
Product: Sg500xg-8f8t firmware 
Product: Sf500-24p firmware 
Product: Sg500-52p firmware 
Product: Sg500-28 firmware 
Product: Sf200-48p firmware 
Product: Sg200-50p firmware 
Product: Sg200-26 firmware 
Product: Sf500-48p firmware 
Product: Sg500x-24p firmware 
Product: Sg500-28p firmware 
Product: Sf200-24fp firmware 
Product: Sg200-26p firmware 
Product: Sg200-08p firmware 
Product: Sg500x-48p firmware 
Product: Sf500-24 firmware 
Product: Sg500-52mp firmware 
Product: Sf200-48 firmware 
Product: Sg200-50fp firmware 
Product: Sg200-18 firmware 
Product: Sf500-48 firmware 
Product: Sg500x-24 firmware 
Product: Sg500-28mpp firmware 

CVSS2 => (AV:N/AC:M/Au:N/C:P/I:P/A:N)

CVSS Base Score
Impact Subscore
Exploitability Subscore
5.8/10
4.9/10
8.6/10
Exploit range
Attack complexity
Authentication
Remote
Medium
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
Partial
None

 References:
http://www.securityfocus.com/bid/109288
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190717-sbss-redirect

Related CVE
CVE-2019-1915
A vulnerability in the web-based interface of Cisco Unified Communications Manager, Cisco Unified Communications Manager Session Management Edition (SME), Cisco Unified Communications Manager IM and Presence (Unified CM IM&P) Service, and Cisco U...
CVE-2019-15272
A vulnerability in the web-based interface of Cisco Unified Communications Manager and Cisco Unified Communications Manager Session Management Edition (SME) could allow an unauthenticated, remote attacker to bypass security restrictions. The vulnerab...
CVE-2019-15259
A vulnerability in Cisco Unified Contact Center Express (UCCX) Software could allow an unauthenticated, remote attacker to conduct an HTTP response splitting attack. The vulnerability is due to insufficient input validation of some parameters that ar...
CVE-2019-15256
A vulnerability in the Internet Key Exchange version 1 (IKEv1) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of an aff...
CVE-2019-12716
A vulnerability in the web-based interface of Cisco Unified Communications Manager and Cisco Unified Communications Manager Session Management Edition (SME) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attac...
CVE-2019-12715
A vulnerability in the web-based interface of Cisco Unified Communications Manager and Cisco Unified Communications Manager Session Management Edition (SME) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attac...
CVE-2019-12713
A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of the affected so...
CVE-2019-12712
A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of the affected so...

Copyright 2019, cxsecurity.com

 

Back to Top