SSH Access Vulnerability in Cisco Aironet Access Points
CVE-2018-0226

7.5HIGH

What is CVE-2018-0226?

The vulnerability arises from the incorrect management of SSH user accounts for Cisco Aironet 1800, 2800, and 3800 Series Access Points running Cisco Mobility Express Software. An authenticated attacker can exploit this weakness to gain elevated privileges. Specifically, if an administrator adds user accounts improperly, the default SSH user account configuration allows attackers with valid credentials to authenticate to the access point using a privilege escalation method. This could lead to unauthorized administrative access and possible control over the network device.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Cisco Aironet 1800, 2800, and 3800 Series Access Points Cisco Aironet 1800, 2800, and 3800 Series Access Points

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.