Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-98rg-4fmq-frpj

Опубликовано: 18 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.7

Описание

A vulnerability in the social login configuration option for the guest users of Cisco Business Wireless Access Points (APs) could allow an unauthenticated, adjacent attacker to bypass social login authentication. This vulnerability is due to a logic error with the social login implementation. An attacker could exploit this vulnerability by attempting to authenticate to an affected device. A successful exploit could allow the attacker to access the Guest Portal without authentication.

A vulnerability in the social login configuration option for the guest users of Cisco Business Wireless Access Points (APs) could allow an unauthenticated, adjacent attacker to bypass social login authentication. This vulnerability is due to a logic error with the social login implementation. An attacker could exploit this vulnerability by attempting to authenticate to an affected device. A successful exploit could allow the attacker to access the Guest Portal without authentication.

EPSS

Процентиль: 3%
0.00016
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-288
CWE-306

Связанные уязвимости

CVSS3: 4.7
nvd
больше 2 лет назад

A vulnerability in the social login configuration option for the guest users of Cisco Business Wireless Access Points (APs) could allow an unauthenticated, adjacent attacker to bypass social login authentication. This vulnerability is due to a logic error with the social login implementation. An attacker could exploit this vulnerability by attempting to authenticate to an affected device. A successful exploit could allow the attacker to access the Guest Portal without authentication.

CVSS3: 4.7
fstec
больше 2 лет назад

Уязвимость микропрограммного обеспечения беспроводных точек доступа Cisco Business Wireless Access Points (AP), позволяющая нарушителю получить доступ к гостевому порталу без аутентификации

EPSS

Процентиль: 3%
0.00016
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-288
CWE-306