Vulnerability Name: | CVE-2007-2041 (CCN-33611) | ||||||||
Assigned: | 2007-04-12 | ||||||||
Published: | 2007-04-12 | ||||||||
Updated: | 2017-07-29 | ||||||||
Summary: | Cisco Wireless LAN Controller (WLC) before 4.0.206.0 saves the WLAN ACL configuration with an invalid checksum, which prevents WLAN ACLs from being loaded at boot time, and might allow remote attackers to bypass intended access restrictions, aka Bug ID CSCse58195. | ||||||||
CVSS v3 Severity: | 4.8 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N)
| ||||||||
CVSS v2 Severity: | 4.0 Medium (CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:N) 3.3 Low (Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:N/E:F/RL:OF/RC:C)
3.3 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:N/E:F/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Configuration | ||||||||
References: | Source: MITRE Type: CNA CVE-2007-2041 Source: CCN Type: SECTRACK ID: 1017908 Cisco Wireless LAN Controller Lets Remote Users Modify the Configuration and Deny Service Source: SECTRACK Type: UNKNOWN 1017908 Source: CCN Type: cisco-sa-20070412-wlc Cisco Security Advisory: Multiple Vulnerabilities in the Cisco Wireless LAN Controller and Cisco Lightweight Access Points Source: CISCO Type: Vendor Advisory 20070412 Multiple Vulnerabilities in the Cisco Wireless LAN Controller and Cisco Lightweight Access Points Source: OSVDB Type: UNKNOWN 34138 Source: CCN Type: OSVDB ID: 34138 Cisco Wireless LAN Controller (WLC) WLAN ACL Configuration Loading Weakness Source: BID Type: UNKNOWN 23461 Source: CCN Type: BID-23461 Cisco Wireless Lan Controller Multiple Remote Vulnerabilities Source: VUPEN Type: UNKNOWN ADV-2007-1368 Source: XF Type: UNKNOWN cisco-wlc-acl-weak-security(33611) Source: XF Type: UNKNOWN cisco-wlc-acl-weak-security(33611) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |