Security News > 2021 > February > Cisco fixes critical code execution bugs in SMB VPN routers

Cisco has addressed multiple pre-auth remote code execution vulnerabilities affecting several small business VPN routers and allowing attackers to execute arbitrary code as root on successfully exploited devices.
The security bugs with a severity rating of 9.8/10 were found in the web-based management interface of Cisco small business routers.
Cisco says that its Dual WAN Gigabit VPN Routers are not affected.
Luckily, even if you cannot immediately patch vulnerable routers, the Cisco Product Security Incident Response Team says that it isn't "Aware of any public announcements or malicious use of the vulnerabilities."
Cisco today has also addressed high severity vulnerabilities impacting other business routers and the IOS XR software.
Last month, Cisco has also patched several pre-auth RCE vulnerabilities affecting multiple SD-WAN products and the Cisco Smart Software Manager software.
News URL
Related news
- Unsecured Tunneling Protocols Expose 4.2 Million Hosts, Including VPNs and Routers (source)
- Cisco Fixes Critical Privilege Escalation Flaw in Meeting Management (CVSS 9.9) (source)
- Cisco fixes ClamAV vulnerability with available PoC and critical Meeting Management flaw (source)
- Patch now: Cisco fixes critical 9.9-rated, make-me-admin bug in Meeting Management (source)
- Critical Cacti Security Flaw (CVE-2025-22604) Enables Remote Code Execution (source)
- Netgear warns users to patch critical WiFi router vulnerabilities (source)
- Cisco Patches Critical ISE Vulnerabilities Enabling Root CmdExec and PrivEsc (source)
- Critical Cisco ISE bug can let attackers run commands as root (source)
- Chinese hackers breach more US telecoms via unpatched Cisco routers (source)
- Juniper patches critical auth bypass in Session Smart routers (source)