CVE-2015-6358
5.9
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.2 / Impact: 3.6
Source: NVD
Description
Multiple Cisco embedded devices use hardcoded X.509 certificates and SSH host keys embedded in the firmware, which allows remote attackers to defeat cryptographic protection mechanisms and conduct man-in-the-middle attacks by leveraging knowledge of these certificates and keys from another installation, aka Bug IDs CSCuw46610, CSCuw46620, CSCuw46637, CSCuw46654, CSCuw46665, CSCuw46672, CSCuw46677, CSCuw46682, CSCuw46705, CSCuw46716, CSCuw46979, CSCuw47005, CSCuw47028, CSCuw47040, CSCuw47048, CSCuw47061, CSCuw90860, CSCuw90869, CSCuw90875, CSCuw90881, CSCuw90899, and CSCuw90913.
Affected (24)
Products: Cisco: Rv320 Firmware, Rv325 Firmware, Rvs4000 Firmware, Wrv210 Firmware, Wap4410n Firmware, Wrv200 Firmware, Wrvs4400n Firmware, Wap200 Firmware, Wvc2300 Firmware, Pvc2300 Firmware, Srw224p Firmware, Wet200 Firmware, Wap2000 Firmware, Wap4400n Firmware, Rv120w Firmware, Rv180 Firmware, Rv180w Firmware, Rv315w Firmware, Srp520 Firmware, Srp520 U Firmware, Wrp500 Firmware, Spa400 Firmware, Rtp300 Firmware, Rv220w Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.3.1.10 |
| Running on/with | Platform Versions |
|---|---|
Cisco Rv320 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.3.1.10 |
| Running on/with | Platform Versions |
|---|---|
Cisco Rv325 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.0.3.4 |
| Running on/with | Platform Versions |
|---|---|
Cisco Rvs4000 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.0.1.5 |
| Running on/with | Platform Versions |
|---|---|
Cisco Wrv210 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.0.7.8 |
| Running on/with | Platform Versions |
|---|---|
Cisco Wap4410n | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.0.39 |
| Running on/with | Platform Versions |
|---|---|
Cisco Wrv200 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.0.2.2 |
| Running on/with | Platform Versions |
|---|---|
Cisco Wrvs4400n | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.0.6.0 |
| Running on/with | Platform Versions |
|---|---|
Cisco Wap200 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.1.2.6 |
| Running on/with | Platform Versions |
|---|---|
Cisco Wvc2300 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.1.2.6 |
| Running on/with | Platform Versions |
|---|---|
Cisco Pvc2300 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.0.2.4 |
| Running on/with | Platform Versions |
|---|---|
Cisco Srw224p | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.0.8.0 |
| Running on/with | Platform Versions |
|---|---|
Cisco Wet200 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.0.8.0 |
| Running on/with | Platform Versions |
|---|---|
Cisco Wap2000 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Up to - |
| Running on/with | Platform Versions |
|---|---|
Cisco Wap4400n | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.0.5.9 |
| Running on/with | Platform Versions |
|---|---|
Cisco Rv120w | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.0.5.4 |
| Running on/with | Platform Versions |
|---|---|
Cisco Rv180 | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.0.5.4 |
| Running on/with | Platform Versions |
|---|---|
Cisco Rv180w | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.01.03 |
| Running on/with | Platform Versions |
|---|---|
Cisco Rv315w | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.01.29 |
| Running on/with | Platform Versions |
|---|---|
Cisco Srp520 | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.2.6 |
| Running on/with | Platform Versions |
|---|---|
Cisco Srp520 U | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.0.1.002 |
| Running on/with | Platform Versions |
|---|---|
Cisco Wrp500 | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.1.2.2 |
| Running on/with | Platform Versions |
|---|---|
Cisco Spa400 | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 3.1.24 |
| Running on/with | Platform Versions |
|---|---|
Cisco Rtp300 | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.0.4.17 |
| Running on/with | Platform Versions |
|---|---|
Cisco Rv220w | All versions |
References (14)
Source: psirt@cisco.com
Issue TrackingPatchVendor Advisory
Source: psirt@cisco.com
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Timeline
No history available yet.