SSH Access Vulnerability in Cisco Aironet Access Points
CVE-2018-0226
Key Information:
- Vendor
Cisco
- Vendor
- CVE Published:
- 2 May 2018
What is CVE-2018-0226?
The vulnerability arises from the incorrect management of SSH user accounts for Cisco Aironet 1800, 2800, and 3800 Series Access Points running Cisco Mobility Express Software. An authenticated attacker can exploit this weakness to gain elevated privileges. Specifically, if an administrator adds user accounts improperly, the default SSH user account configuration allows attackers with valid credentials to authenticate to the access point using a privilege escalation method. This could lead to unauthorized administrative access and possible control over the network device.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco Aironet 1800, 2800, and 3800 Series Access Points Cisco Aironet 1800, 2800, and 3800 Series Access Points
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved