Medium
CVE-2023-20007
Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow a remote authenticated attacker to execute arbitrary code on the system, caused by improper validation of user-supplied input to the web-based management interface. By sending a specially-crafted HTTP input, an attacker could exploit this vulnerability to execute arbitrary code as the root on the underlying operating system or cause the web-based management process to restart.
Cisco
Refer to Cisco Security Advisory for patch, upgrade or suggested workaround information.