Cisco Security Advisory Cisco RV220W Management Authentication Bypass Vulnerability Critical Advisory ID: cisco-sa-20160127-rv220 First Published: 2016 January 27 16:00 GMT Version 1.0: Final Workarounds: Yes Cisco Bug IDs: CSCuv29574 CVE-2015-6319 CWE-20 CVSS Score: Base 10.0, Temporal 8.3. The vulnerability is due to insufficient input validation of HTTP request headers that are sent to the web-based management interface of an affected device. A successful exploit could allow the attacker to bypass authentication on the management interface and gain administrative privileges on the device.”]
Source: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160127-rv220

