First published: Tue Aug 10 2010(Updated: )
Cisco Unified Wireless Network (UWN) Solution 7.x through 7.0.98.0 does not properly handle multiple SSH sessions, which allows physically proximate attackers to read a password, related to an "arrow key failure," aka Bug ID CSCtg51544.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Wireless Network Solution | =7.0 | |
Cisco Unified Wireless Network Solution | =7.0.98.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-2975 is considered a medium severity vulnerability.
To fix CVE-2010-2975, upgrade to a version of Cisco Unified Wireless Network Solution later than 7.0.98.0.
Exploits for CVE-2010-2975 could allow an attacker with physical access to read sensitive information, such as passwords.
Users of Cisco Unified Wireless Network Solution versions 7.x through 7.0.98.0 are affected by CVE-2010-2975.
CVE-2010-2975 is caused by improper handling of multiple SSH sessions which leads to potential security risks.