First published: Tue Aug 10 2010(Updated: )
Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0 on 4404 series controllers does not properly implement the WEBAUTH_REQD state, which allows remote attackers to bypass intended access restrictions via WLAN traffic, aka Bug ID CSCtb75305.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Wireless Network Solution | =7.0 | |
Cisco Unified Wireless Network Solution | =7.0.98.0 | |
Cisco 4404 Wireless LAN Controller |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-2984 has a medium severity rating due to its potential to allow remote attackers to bypass access restrictions.
To fix CVE-2010-2984, upgrade your Cisco Unified Wireless Network Solution to version 7.0.98.0 or later.
CVE-2010-2984 affects Cisco Unified Wireless Network Solution versions prior to 7.0.98.0.
CVE-2010-2984 allows remote attackers to bypass intended access restrictions via WLAN traffic.
CVE-2010-2984 specifically applies to Cisco Unified Wireless Network Solution 7.x on 4404 series controllers.