Source: The Register
Article note: Again?
It's a classic "strcopy into a buffer fixed-bytes away from the return address" bug.
RV110W, RV130W, RV215W need patching to close remote hijacking bug
Cisco has patched three of its RV-series routers after Pen Test Partners (PTP) found them using hoary old C function strcpy
insecurely in login authentication function. The programming blunder can be exploited to potentially hijack the devices.…