First published: Wed Apr 15 2020(Updated: )
A vulnerability in the web-based management interface of Cisco Mobility Express Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protections for the web-based management interface on an affected device. An attacker could exploit this vulnerability by persuading a user with an active session on an affected device to follow a malicious link. A successful exploit could allow the attacker to perform arbitrary actions, including modifying the configuration, with the privilege level of the user.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Aironet 1542i Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 1542i Firmware | =8.10\(1.255\) | |
Cisco Aironet 1542i | ||
Cisco Aironet 1542d Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 1542d Firmware | =8.10\(1.255\) | |
Cisco Aironet 1542d | ||
Cisco Aironet 1562i Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 1562i Firmware | =8.10\(1.255\) | |
Cisco Aironet 1562i | ||
Cisco Aironet 1562e Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 1562e Firmware | =8.10\(1.255\) | |
Cisco Aironet 1562e | ||
Cisco Aironet 1562d Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 1562d Firmware | =8.10\(1.255\) | |
Cisco Aironet 1562d | ||
Cisco Aironet 1815 Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 1815 Firmware | =8.10\(1.255\) | |
Cisco Aironet 1815 | ||
Cisco Aironet 1830 Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 1830 Firmware | =8.10\(1.255\) | |
Cisco Aironet 1830 | ||
Cisco Aironet 1840 Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 1840 Firmware | =8.10\(1.255\) | |
Cisco Aironet 1840 | ||
Cisco Aironet 1850 Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 1850 Firmware | =8.10\(1.255\) | |
Cisco Aironet 1850 | ||
Cisco Aironet 2800i Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 2800i Firmware | =8.10\(1.255\) | |
Cisco Aironet 2800i | ||
Cisco Aironet 2800e Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 2800e Firmware | =8.10\(1.255\) | |
Cisco Aironet 2800e | ||
Cisco Aironet 3800i Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 3800i Firmware | =8.10\(1.255\) | |
Cisco Aironet 3800i | ||
Cisco Aironet 3800e Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 3800e Firmware | =8.10\(1.255\) | |
Cisco Aironet 3800e | ||
Cisco Aironet 3800p Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 3800p Firmware | =8.10\(1.255\) | |
Cisco Aironet 3800p | ||
Cisco Aironet 4800 Firmware | >=8.0<8.8.130.0 | |
Cisco Aironet 4800 Firmware | =8.10\(1.255\) | |
Cisco Aironet 4800 | ||
Cisco Catalyst Iw6300 Firmware | >=8.0<8.8.130.0 | |
Cisco Catalyst Iw6300 Firmware | =8.10\(1.255\) | |
Cisco Catalyst Iw6300 | ||
Cisco 6300 Series Access Points Firmware | >=8.0<8.8.130.0 | |
Cisco 6300 Series Access Points Firmware | =8.10\(1.255\) | |
Cisco 6300 Series Access Points |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.