CVE-2009-2976
Severity CVSS v4.0:
Pending analysis
Type:
CWE-310
Cryptographic Issues
Publication date:
27/08/2009
Last modified:
09/04/2025
Description
Cisco Aironet Lightweight Access Point (AP) devices send the contents of certain multicast data frames in cleartext, which allows remote attackers to discover Wireless LAN Controller MAC addresses and IP addresses, and AP configuration details, by sniffing the wireless network.
Impact
Base Score 2.0
7.80
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:h:cisco:aironet_ap1100:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:cisco:aironet_ap1200:*:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://securitytracker.com/id?1022774=
- http://www.airmagnet.com/assets/AM_Technote_SkyJack_082509.pdf
- http://www.airmagnet.com/news/press_releases/2009/08252009.php
- http://securitytracker.com/id?1022774=
- http://www.airmagnet.com/assets/AM_Technote_SkyJack_082509.pdf
- http://www.airmagnet.com/news/press_releases/2009/08252009.php



