Vulnerabilities > CVE-2009-1167 - Unspecified vulnerability in Cisco products
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN cisco
nessus
Summary
Unspecified vulnerability on the Cisco Wireless LAN Controller (WLC) platform 4.x before 4.2.205.0 and 5.x before 5.2.191.0, as used in Cisco 1500 Series, 2000 Series, 2100 Series, 4100 Series, 4200 Series, and 4400 Series Wireless Services Modules (WiSM), WLC Modules for Integrated Services Routers, and Catalyst 3750G Integrated Wireless LAN Controllers, allows remote attackers to modify the configuration via a crafted (1) HTTP or (2) HTTPS request, aka Bug ID CSCsy44672.
Vulnerable Configurations
Nessus
NASL family | CISCO |
NASL id | CISCO-SA-20090727-WLC.NASL |
description | The remote Cisco Wireless LAN Controller (WLC) is affected by one or more of the following vulnerabilities: - Malformed HTTP or HTTPS authentication response Denial of Service (CVE-2009-1164) - SSH connections Denial of Service (CVE-2009-1165) - Crafted HTTP or HTTPS request Denial of Service (CVE-2009-1166) - Crafted HTTP or HTTPS request unauthorized configuration modification vulnerability (CVE-2009-1167) |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 70123 |
published | 2013-09-25 |
reporter | This script is Copyright (C) 2013-2018 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/70123 |
title | Multiple Vulnerabilities in Cisco Wireless LAN Controllers (cisco-sa-20090727-wlc) |
code |
|
References
- http://www.cisco.com/en/US/products/products_security_advisory09186a0080adb3d7.shtml
- http://www.cisco.com/en/US/products/products_security_advisory09186a0080adb3d7.shtml
- http://www.securitytracker.com/id?1022606
- http://www.securitytracker.com/id?1022606
- http://www.vupen.com/english/advisories/2009/2021
- http://www.vupen.com/english/advisories/2009/2021