CVE-2007-2040: Medium severity Cisco Wireless LAN Controller Software vulnerability
Cisco Aironet 1000 Series and 1500 Series Lightweight Access Points before 3.2.185.0, and 4.0.x before 4.0.206.0, have a hard-coded password, which allows attackers with physical access to perform arbitrary actions on the device, aka Bug ID CSCsg15192.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2007-2040?
The severity of CVE-2007-2040 is considered high due to the presence of a hard-coded password that can allow unauthorized access to the affected devices.
How do I fix CVE-2007-2040?
To fix CVE-2007-2040, upgrade the Cisco Aironet 1000 Series and 1500 Series Lightweight Access Points to firmware version 3.2.185.0 or later, or 4.0.206.0 or later.
Which devices are affected by CVE-2007-2040?
CVE-2007-2040 affects the Cisco Aironet 1000 Series and 1500 Series Lightweight Access Points running versions prior to 3.2.185.0 and 4.0.x versions before 4.0.206.0.
What are the risks associated with CVE-2007-2040?
The risks associated with CVE-2007-2040 include potential unauthorized access and arbitrary actions on the device by anyone with physical access.
Is there a workaround for CVE-2007-2040?
There is no official workaround for CVE-2007-2040; updating the device firmware is recommended to mitigate the vulnerability.