🔙 목록으로 돌아가기

CVE-2019-1943: Cisco Small Business 200,300 and 500 Series Switches - Open Redirect

TitleCisco Small Business 200,300 and 500 Series Switches - Open Redirect
Authorbhutch
SeverityMedium
ImpactAn attacker can exploit this vulnerability to redirect users to malicious websites, leading to phishing attacks or the download of malware.
RemediationApply the necessary patches or updates provided by Cisco to fix the open redirect vulnerability.
CVSS Score6.1
EPSS Score0.22946
CVE IDCVE-2019-1943
CWE IDCWE-601
Shodan Query/config/log_off_page.htm
Tags cve cve2019 redirect cisco vuln

🔍 Vulnerability Description

Cisco Small Business 200,300 and 500 Series Switches contain an open redirect vulnerability in the Web UI. An attacker can redirect a user to a malicious site and possibly obtain sensitive information, modify data, and/or execute unauthorized operations.

🌐 HTTP Request

GET / HTTP/1.1
Host: interact.sh
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:140.0) Gecko/20100101 Firefox/140.2
Connection: close
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2019/CVE-2019-1943.yaml

🦈 Packet Capture: ⬇️ Download cve-2019-1943.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A