CVE-2018-0412
Summary
| CVE | CVE-2018-0412 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-08-15 20:29:00 UTC |
| Updated | 2019-10-09 23:32:00 UTC |
| Description | A vulnerability in the implementation of Extensible Authentication Protocol over LAN (EAPOL) functionality in Cisco Small Business 100 Series Wireless Access Points and Cisco Small Business 300 Series Wireless Access Points could allow an unauthenticated, adjacent attacker to force the downgrade of the encryption algorithm that is used between an authenticator (access point) and a supplicant (Wi-Fi client). The vulnerability is due to the improper processing of certain EAPOL messages that are received during the Wi-Fi handshake process. An attacker could exploit this vulnerability by establishing a man-in-the-middle position between a supplicant and an authenticator and manipulating an EAPOL message exchange to force usage of a WPA-TKIP cipher instead of the more secure AES-CCMP cipher. A successful exploit could allow the attacker to conduct subsequent cryptographic attacks, which could lead to the disclosure of confidential information. Cisco Bug IDs: CSCvj29229. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Cisco | Wap121 | - | All | All | All |
| Hardware | Cisco | Wap121 | - | All | All | All |
| Operating System | Cisco | Wap121 Firmware | All | All | All | All |
| Hardware | Cisco | Wap125 | - | All | All | All |
| Hardware | Cisco | Wap125 | - | All | All | All |
| Operating System | Cisco | Wap125 Firmware | All | All | All | All |
| Hardware | Cisco | Wap131 | - | All | All | All |
| Hardware | Cisco | Wap131 | - | All | All | All |
| Operating System | Cisco | Wap131 Firmware | All | All | All | All |
| Hardware | Cisco | Wap150 | - | All | All | All |
| Hardware | Cisco | Wap150 | - | All | All | All |
| Operating System | Cisco | Wap150 Firmware | All | All | All | All |
| Hardware | Cisco | Wap321 | - | All | All | All |
| Hardware | Cisco | Wap321 | - | All | All | All |
| Operating System | Cisco | Wap321 Firmware | All | All | All | All |
| Hardware | Cisco | Wap351 | - | All | All | All |
| Hardware | Cisco | Wap351 | - | All | All | All |
| Operating System | Cisco | Wap351 Firmware | All | All | All | All |
| Hardware | Cisco | Wap361 | - | All | All | All |
| Hardware | Cisco | Wap361 | - | All | All | All |
| Operating System | Cisco | Wap361 Firmware | All | All | All | All |
| Hardware | Cisco | Wap371 | - | All | All | All |
| Hardware | Cisco | Wap371 | - | All | All | All |
| Operating System | Cisco | Wap371 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Cisco Small Business 100 Series and 300 Series Wireless Access Points Encryption Algorithm Downgrade Vulnerability | CISCO | tools.cisco.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.