Security News

Router Security
2021-02-19 12:00

This report is six months old, and I don't know anything about the organization that produced it, but it has some alarming data about router security. Many routers are powered by very old versions of Linux.

Inseego Wavemaker PRO 5G indoor router certified for use worldwide
2021-02-11 01:15

Inseego announced that its new Wavemaker PRO 5G indoor router has been certified for use in Europe, North America and Australia, with additional regulatory certifications pending for other international markets. "Our Wavemaker PRO 5G solutions are changing the way enterprise and SMB customers think about broadband access," said Inseego President Ashish Sharma.

Cisco reveals critical bug in small biz VPN routers when half the world is stuck working at home
2021-02-05 07:05

Cisco has addressed a clutch of critical vulnerabilities in its small business and VPN routers that can be exploited by an unauthenticated, remote attacker to execute arbitrary code as the root user. Some of the affected devices are also Wi-Fi routers, so could well be in everyday use.

Critical Flaws Reported in Cisco VPN Routers for Businesses—Patch ASAP
2021-02-05 00:02

Cisco has rolled out fixes for multiple critical vulnerabilities in the web-based management interface of Small Business routers that could potentially allow an unauthenticated, remote attacker to execute arbitrary code as the root user on an affected device. The flaws - tracked from CVE-2021-1289 through CVE-2021-1295 - impact RV160, RV160W, RV260, RV260P, and RV260W VPN routers running a firmware release earlier than Release 1.0.01.02.

Cisco Patches Critical Vulnerabilities in Small Business Routers, SD-WAN
2021-02-04 20:23

Cisco this week released software updates to address multiple vulnerabilities across its product portfolio, including critical severity bugs in several small business VPN routers and SD-WAN products. The company warned that the web-based management interface of small business RV160, RV160W, RV260, RV260P, and RV260W VPN routers is affected by seven severe vulnerabilities that could be abused by unauthenticated, remote attackers to execute arbitrary code as root.

Critical Cisco Flaws Open VPN Routers Up to RCE Attacks
2021-02-04 15:59

Cisco is rolling out fixes for critical holes in its lineup of small-business VPN routers. The flaws exist in the web-based management interface of Cisco's small-business lineup of VPN routers.

Cisco fixes critical code execution bugs in SMB VPN routers
2021-02-03 17:24

Cisco has addressed multiple pre-auth remote code execution vulnerabilities affecting several small business VPN routers and allowing attackers to execute arbitrary code as root on successfully exploited devices. The security bugs with a severity rating of 9.8/10 were found in the web-based management interface of Cisco small business routers.

PacketFabric Cloud Router: A multi-cloud connectivity solution
2021-01-21 02:45

PacketFabric announced it has launched Cloud Router, a multi-cloud connectivity solution. Cloud Router will super-serve the enterprise as well as small business who are seeking a future-proofed way to connect multiple cloud providers.

Over 70 Vulnerabilities Will Remain Unpatched in EOL Cisco Routers
2021-01-14 11:27

Cisco this week announced that it does not plan on addressing tens of vulnerabilities affecting some of its small business routers. "Cisco has not released and will not release software updates to address the vulnerabilities described []. The Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers have entered the end-of-life process. Customers are advised to refer to the end-of-life notices for these products," the company underlines.

D-Link Routers at Risk for Remote Takeover from Zero-Day Flaws
2020-12-09 14:56

Some of the impacted router models were first introduced in 2012 and appear to lack the same type of patching cadence as more modern D-Link router models. The routers are common home networking devices sold at numerous retail outlets, which means that people working remotely due to the COVID-19 pandemic likely are exposing not only their own environments but also corporate networks to risk, Digital Defense researchers noted.