


Perceptive Security
SOC/SIEM Consultancy

An OS command injection vulnerability exists in the save_syslog_to_file() function of the "httpd" binary in Cisco RV130/RV130W with firmware 1.0.3.55 and RV110W…
Published:
7 juli 2026 om 22:00:00
Alert date:
8 juli 2026 om 17:03:33
Source:
nvd.nist.gov
Mobile & IoT, Network Infrastructure
An OS command injection vulnerability has been identified in the save_syslog_to_file() function within the 'httpd' binary of Cisco RV130, RV130W, and RV110W routers. The vulnerability stems from improper sanitization of the model_name configuration parameter. Affected firmware versions include RV130/RV130W firmware 1.0.3.55 and RV110W firmware 1.2.2.5 and 1.2.2.8. An authenticated remote attacker could exploit this flaw to execute arbitrary OS commands with root privileges. The vulnerability is tracked as CVE-2026-24698 and has been assigned a high criticality rating. Successful exploitation could grant full root-level control over the affected device. These router models are commonly used in small business environments, increasing the potential impact. Proof-of-concept details have been published on GitHub.
Technical details
Mitigation steps:
Affected products:
Cisco RV130
Cisco RV130W
Cisco RV110W
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-24698
https://github.com/glkfc/IoT-Vulnerability/blob/main/cisco/RV130/3/wp-en.md
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
