Vulnerabilities > CVE-2003-0270 - Unspecified vulnerability in Apple 802.11N 7.3.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
The administration capability for Apple AirPort 802.11 wireless access point devices uses weak encryption (XOR with a fixed key) for protecting authentication credentials, which could allow remote attackers to obtain administrative access via sniffing when the capability is available via Ethernet or non-WEP connections.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Hardware | 1 |
Metasploit
description | This module attempts to authenticate to an Apple Airport using its proprietary and largely undocumented protocol known only as ACPP. |
id | MSF:AUXILIARY/SCANNER/ACPP/LOGIN |
last seen | 2020-02-27 |
modified | 2019-06-27 |
published | 2015-01-05 |
references | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0270 |
reporter | Rapid7 |
source | https://github.com/rapid7/metasploit-framework/blob/master//modules/auxiliary/scanner/acpp/login.rb |
title | Apple Airport ACPP Authentication Scanner |
Nessus
NASL family | Misc. |
NASL id | AIRPORT_PLAINTEXT_CREDENTIALS.NASL |
description | The remote host is an Apple Airport Wireless Access Point which can be administrated on top of TCP port 5009. There is a design flaw in the administrative protocol which makes the clients which connect to this port send the password in cleartext (although slightly obsfuscated). An attacker who has the ability to sniff the data going to this device may use this flaw to gain its administrative password and gain its control. Since the airport base station does not keep any log, it will be difficult to determine that administrative access has been stolen. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 11620 |
published | 2003-05-12 |
reporter | This script is Copyright (C) 2003-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/11620 |
title | Apple AirPort Base Station Authentication Credential Encryption Weakness |
code |
|