SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2019-1891

A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Managed Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.

HIGH 7.5EPSS 1.77%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (1.77%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

A vulnerability in the web interface of Cisco Small Business 200, 300, and 500 Series Managed Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper validation of requests sent to the web interface. An attacker could exploit this vulnerability by sending a malicious request to the web interface of an affected device. A successful exploit could allow the attacker to cause an unexpected reload of the device, resulting in a DoS condition.

CVSS 3.0
7.5 HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS
1.77% probability · 77th percentile
CISA KEV
Not listed
Weakness
CWE-20
Affected
cisco/sf200-24 firmware · cisco/sf200-24p firmware · cisco/sf200-48 firmware · cisco/sf200-48p firmware · cisco/sg200-18 firmware · cisco/sg200-26 firmware · cisco/sg200-26p firmware · cisco/sg200-50 firmware · cisco/sg200-50p firmware · cisco/sg300-10 firmware · cisco/sg300-10mp firmware · cisco/sg300-10mpp firmware · cisco/sg300-10sfp firmware · cisco/sg300-10p firmware · cisco/sg300-10pp firmware · cisco/sg300-20 firmware · cisco/sg300-28 firmware · cisco/sg300-28p firmware · cisco/sg300-28pp firmware · cisco/sg300-28mp firmware · +37 more
Source
psirt@cisco.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.