Cisco Wireless LAN Solution Engine (WLSE) 2.0 through 2.5 and Hosting Solution Engine (HSE) 1.7 through 1.7.3 have a hardcoded username and password, which allows remote attackers to add new users, modify existing users, and change configuration.
Link | Tags |
---|---|
http://www.ciac.org/ciac/bulletins/o-111.shtml | third party advisory patch government resource vendor advisory |
http://www.cisco.com/warp/public/707/cisco-sa-20040407-username.shtml | patch vendor advisory |
http://www.kb.cert.org/vuls/id/659228 | us government resource third party advisory patch |
http://www.securityfocus.com/bid/10076 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/15773 | vdb entry |