CVE-2009-2976
Published Aug 27, 2009
Last updated 15 years ago
Overview
- Description
- Cisco Aironet Lightweight Access Point (AP) devices send the contents of certain multicast data frames in cleartext, which allows remote attackers to discover Wireless LAN Controller MAC addresses and IP addresses, and AP configuration details, by sniffing the wireless network.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.8
- Impact score
- 6.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:C/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-310
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:cisco:aironet_ap1100:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6D954F30-8AD0-41E9-8D62-BEFEBDCB3B6D" }, { "criteria": "cpe:2.3:h:cisco:aironet_ap1200:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2E8B5553-7295-4786-9F81-B4527EAD4F0B" } ], "operator": "OR" } ] } ]