PT-2001-1575 · 3Com+1 · 3Com Airconnect Ap-4111+1
CVE-2001-0352
·
Publicado
2001-07-21
·
Atualizado
2022-08-17
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
3Com AirConnect AP-4111
Symbol 41X1 Access Point
Description
The issue allows remote attackers to obtain the WEP encryption key by reading it from a MIB when the value should be write-only. This can be done via the
dot11WEPDefaultKeyValue in the dot11WEPDefaultKeysTable of the IEEE 802.11b MIB, or the ap128bWepKeyValue in the ap128bWEPKeyTable in the Symbol MIB.Recommendations
For 3Com AirConnect AP-4111, restrict access to the
dot11WEPDefaultKeysTable in the IEEE 802.11b MIB to minimize the risk of exploitation.
For Symbol 41X1 Access Point, restrict access to the ap128bWEPKeyTable in the Symbol MIB to minimize the risk of exploitation.
Avoid using the dot11WEPDefaultKeyValue and ap128bWepKeyValue variables in the affected MIBs until the issue is resolved.Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
3Com Airconnect Ap-4111
Symbol 41X1 Access Point