CVE-2016-1473: Cisco Small Business 220 Series Smart Plus Switches

Critical severity, CVSS 9.8. EPSS: 4% chance of exploitation in the next 30 days.

Cisco Small Business 220 devices with firmware before 1.0.1.1 have a hardcoded SNMP community, which allows remote attackers to read or modify SNMP objects by leveraging knowledge of this community, aka Bug ID CSCuz76216.

Affected products

  • Cisco Small Business 220 Series Smart Plus Switches: version 1.0.0.17 only; version 1.0.0.18 only; version 1.0.0.19 only

Published 2016-09-02. Last modified 2026-06-17.