ID

VAR-201703-0713


CVE

CVE-2017-3831


TITLE

Cisco Mobility Express 1800 Vulnerability related to authorization, authority, and access control in software of series access point

Trust: 0.8

sources: JVNDB: JVNDB-2017-002639

DESCRIPTION

A vulnerability in the web-based GUI of Cisco Mobility Express 1800 Series Access Points could allow an unauthenticated, remote attacker to bypass authentication. The attacker could be granted full administrator privileges. The vulnerability is due to improper implementation of authentication for accessing certain web pages using the GUI interface. An attacker could exploit this vulnerability by sending a crafted HTTP request to the web interface of the affected system. A successful exploit could allow the attacker to bypass authentication and perform unauthorized configuration changes or issue control commands to the affected device. This vulnerability affects Cisco Mobility Express 1800 Series Access Points running a software version prior to 8.2.110.0. Cisco Bug IDs: CSCuy68219. Vendors have confirmed this vulnerability Bug ID CSCuy68219 It is released as.Information is obtained, information is altered, and service operation is disrupted (DoS) An attack may be carried out. This may lead to further attacks. web-based GUI is a web-based graphical user interface used in it. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170315-ap1800 ["https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170315-ap1800"] -----BEGIN PGP SIGNATURE----- iQKBBAEBAgBrBQJYyWWBZBxDaXNjbyBTeXN0ZW1zIFByb2R1Y3QgU2VjdXJpdHkg SW5jaWRlbnQgUmVzcG9uc2UgVGVhbSAoQ2lzY28gUFNJUlQga2V5IDIwMTYtMjAx NykgPHBzaXJ0QGNpc2NvLmNvbT4ACgkQrz2APcQAkHlvtxAA20Aufg/w2bAsLWks nrc2gUsx8ZfpKwm1IyZbxvvAvk/CKqVpzycMOZQFnlauMp4nSVSA1DrIYnwGxgS9 nW3Gt1yk5J6JlvTTYFCmjcJnqo8dnC9UGs4eKsapCIHEyiOMyWuwk3LNbIVCk9G/ ymtCDf4cv+3380hqJpEOl/tsygmVWtmDAxVWiObX72N2y7XIQwUpGgteHU+ZMn15 kliO/Odtzi6q9qlR6oEMtdoTNEx3+2mDH9hU0snHLBEs66eITmTbYRTuHOw9YiiJ fS83QMzh3d8WsXmK+d4w0gOzvcBznObCt7gIvBo+54asza7kohCMcM1uNQlzg3cT 6j9Fq2/fQTWNRqdDmfF4OHZObR7gHIh9rCNC6jEyf4qtOIrK+MuXRVrxiHW+jUW9 hZ1w/CInZtBSiKsndwA9AJkgaza8anyASjPhOJ0oIMkVoxSndieA3kqcYyixKs8N 7Sl+CLp19QyffeN7SbVSeedefs29VCOrnTmHUT9qIh13/vMlcYUGyHFIhUsTs1Yq FDtjMIAST+bRime9dUpC3bNubSwLz1JuHD2AT/IWPMkCKSQVvd7f+vY+Urur+i96 6PR5oizd/gP6RKL/78wp7DOGCt1ztclmpIdFBxj1LwH5KKP/lBTjvK54NUsUkoL+ +CvKEPjezdvugZOOoo6K2VXf4QY= =Xeal -----END PGP SIGNATURE-----

Trust: 2.07

sources: NVD: CVE-2017-3831 // JVNDB: JVNDB-2017-002639 // BID: 96909 // VULHUB: VHN-112034 // PACKETSTORM: 141660

AFFECTED PRODUCTS

vendor:ciscomodel:aironet access point softwarescope:eqversion:8.1\(15.14\)

Trust: 1.6

vendor:ciscomodel:aironet access point softwarescope:eqversion:8.1\(112.4\)

Trust: 1.6

vendor:ciscomodel:aironet access point softwarescope:eqversion:8.1\(131.0\)

Trust: 1.6

vendor:ciscomodel:aironet access point softwarescope:eqversion:8.1\(112.3\)

Trust: 1.6

vendor:ciscomodel:aironet access point softwarescope:eqversion:8.1(112.3)

Trust: 0.8

vendor:ciscomodel:aironet access point softwarescope:eqversion:8.1(112.4)

Trust: 0.8

vendor:ciscomodel:aironet access point softwarescope:eqversion:8.1(131.0)

Trust: 0.8

vendor:ciscomodel:aironet access point softwarescope:eqversion:8.1(15.14)

Trust: 0.8

vendor:ciscomodel:mobility express access pointsscope:eqversion:18008.2

Trust: 0.3

vendor:ciscomodel:mobility express access pointsscope:eqversion:18008.1.10.159

Trust: 0.3

vendor:ciscomodel:mobility express access pointsscope:eqversion:18008.1

Trust: 0.3

vendor:ciscomodel:mobility express access pointsscope:neversion:18008.2.130.0

Trust: 0.3

sources: BID: 96909 // JVNDB: JVNDB-2017-002639 // CNNVD: CNNVD-201703-637 // NVD: CVE-2017-3831

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2017-3831
value: CRITICAL

Trust: 1.0

NVD: CVE-2017-3831
value: CRITICAL

Trust: 0.8

CNNVD: CNNVD-201703-637
value: CRITICAL

Trust: 0.6

VULHUB: VHN-112034
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2017-3831
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-112034
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

nvd@nist.gov: CVE-2017-3831
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 3.9
impactScore: 5.9
version: 3.0

Trust: 1.8

sources: VULHUB: VHN-112034 // JVNDB: JVNDB-2017-002639 // CNNVD: CNNVD-201703-637 // NVD: CVE-2017-3831

PROBLEMTYPE DATA

problemtype:CWE-264

Trust: 1.9

problemtype:CWE-287

Trust: 1.1

sources: VULHUB: VHN-112034 // JVNDB: JVNDB-2017-002639 // NVD: CVE-2017-3831

THREAT TYPE

remote

Trust: 0.7

sources: PACKETSTORM: 141660 // CNNVD: CNNVD-201703-637

TYPE

authorization issue

Trust: 0.6

sources: CNNVD: CNNVD-201703-637

CONFIGURATIONS

sources: JVNDB: JVNDB-2017-002639

EXPLOIT AVAILABILITY

sources: VULHUB: VHN-112034

PATCH

title:cisco-sa-20170315-ap1800url:https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170315-ap1800

Trust: 0.8

title:Cisco Mobility Express 1800 Series Access Points Fixes for permission permissions and access control vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=68498

Trust: 0.6

sources: JVNDB: JVNDB-2017-002639 // CNNVD: CNNVD-201703-637

EXTERNAL IDS

db:NVDid:CVE-2017-3831

Trust: 2.9

db:BIDid:96909

Trust: 2.0

db:JVNDBid:JVNDB-2017-002639

Trust: 0.8

db:CNNVDid:CNNVD-201703-637

Trust: 0.7

db:PACKETSTORMid:141660

Trust: 0.2

db:VULHUBid:VHN-112034

Trust: 0.1

sources: VULHUB: VHN-112034 // BID: 96909 // JVNDB: JVNDB-2017-002639 // PACKETSTORM: 141660 // CNNVD: CNNVD-201703-637 // NVD: CVE-2017-3831

REFERENCES

url:https://tools.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-20170315-ap1800

Trust: 2.1

url:http://www.securityfocus.com/bid/96909

Trust: 1.7

url:https://nvd.nist.gov/vuln/detail/cve-2017-3831

Trust: 0.9

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2017-3831

Trust: 0.8

url:http://www.cisco.com/

Trust: 0.3

url:https://tools.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-20170315-ap1800"]

Trust: 0.1

sources: VULHUB: VHN-112034 // BID: 96909 // JVNDB: JVNDB-2017-002639 // PACKETSTORM: 141660 // CNNVD: CNNVD-201703-637 // NVD: CVE-2017-3831

CREDITS

Bijay Limbu Senihang of Rigo Information Technology.

Trust: 0.3

sources: BID: 96909

SOURCES

db:VULHUBid:VHN-112034
db:BIDid:96909
db:JVNDBid:JVNDB-2017-002639
db:PACKETSTORMid:141660
db:CNNVDid:CNNVD-201703-637
db:NVDid:CVE-2017-3831

LAST UPDATE DATE

2024-11-23T22:45:46.024000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-112034date:2019-10-09T00:00:00
db:BIDid:96909date:2017-03-16T00:03:00
db:JVNDBid:JVNDB-2017-002639date:2017-04-24T00:00:00
db:CNNVDid:CNNVD-201703-637date:2019-10-17T00:00:00
db:NVDid:CVE-2017-3831date:2024-11-21T03:26:12.140

SOURCES RELEASE DATE

db:VULHUBid:VHN-112034date:2017-03-15T00:00:00
db:BIDid:96909date:2017-03-15T00:00:00
db:JVNDBid:JVNDB-2017-002639date:2017-04-24T00:00:00
db:PACKETSTORMid:141660date:2017-03-16T00:05:10
db:CNNVDid:CNNVD-201703-637date:2017-03-28T00:00:00
db:NVDid:CVE-2017-3831date:2017-03-15T20:59:00.193