CVE-2022-20695
10.0
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 6.0
Source: NVD
Description
A vulnerability in the authentication functionality of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker to bypass authentication controls and log in to the device through the management interface This vulnerability is due to the improper implementation of the password validation algorithm. An attacker could exploit this vulnerability by logging in to an affected device with crafted credentials. A successful exploit could allow the attacker to bypass authentication and log in to the device as an administrator. The attacker could obtain privileges that are the same level as an administrative user but it depends on the crafted credentials. Note: This vulnerability exists because of a non-default device configuration that must be present for it to be exploitable. For details about the vulnerable configuration, see the Vulnerable Products section of this advisory.
Affected (2)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| All versions | |
| All versions |
| Running on/with | Platform Versions |
|---|---|
Cisco 3504 Wireless Controller | All versions |
Cisco 5520 Wireless Controller | All versions |
Cisco 8540 Wireless Controller | All versions |
Cisco Aironet 1540 | All versions |
Cisco Aironet 1542d | All versions |
Cisco Aironet 1542i | All versions |
Cisco Aironet 1560 | All versions |
Cisco Aironet 1562d | All versions |
Cisco Aironet 1562e | All versions |
Cisco Aironet 1562i | All versions |
Cisco Aironet 1815 | All versions |
Cisco Aironet 1815i | All versions |
Cisco Aironet 1815m | All versions |
Cisco Aironet 1815t | All versions |
Cisco Aironet 1815w | All versions |
Cisco Aironet 1830 | All versions |
Cisco Aironet 1830e | All versions |
Cisco Aironet 1830i | All versions |
Cisco Aironet 1832 | All versions |
Cisco Aironet 1850 | All versions |
Cisco Aironet 1850e | All versions |
Cisco Aironet 1850i | All versions |
Cisco Aironet 1852 | All versions |
Cisco Aironet 2800 | All versions |
Cisco Aironet 2800e | All versions |
Cisco Aironet 2800i | All versions |
Cisco Aironet 3800 | All versions |
Cisco Aironet 3800e | All versions |
Cisco Aironet 3800i | All versions |
Cisco Aironet 3800p | All versions |
Cisco Aironet 4800 | All versions |
Cisco Virtual Wireless Controller | All versions |
Related CWEs
CWE-287
Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
CWE-303
Incorrect Implementation of Authentication Algorithm
The requirements for the product dictate the use of an established authentication algorithm, but the implementation of the algorithm is incorrect.
References (2)
Source: psirt@cisco.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.