Cisco’s RV320/RV325 routers are vulnerable to a command injection and info disclosure vulnerability. Hacker chaining the two bugs could target RV320 and RV325 routers available online to obtain hashed access credentials for a privileged account and thus be able to run arbitrary commands as root. More than 9,500 of these routers were found to be affected by the info disclosure glitch, most of them in the U.S., Bad Packets says. There are about 20,000 Cisco routers reachable over the internet, but not all of them may be vulnerable.
Source: https://www.bleepingcomputer.com/news/security/hackers-targeting-cisco-rv320-rv325-routers-using-new-exploits/

