CVE-2020-3261
Summary
| CVE | CVE-2020-3261 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-04-15 21:15:00 UTC |
| Updated | 2020-04-29 18:38:00 UTC |
| Description | A vulnerability in the web-based management interface of Cisco Mobility Express Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protections for the web-based management interface on an affected device. An attacker could exploit this vulnerability by persuading a user with an active session on an affected device to follow a malicious link. A successful exploit could allow the attacker to perform arbitrary actions, including modifying the configuration, with the privilege level of the user. |
Risk And Classification
Problem Types: CWE-352
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Cisco | 6300 Series Access Points | - | All | All | All |
| Hardware | Cisco | 6300 Series Access Points | - | All | All | All |
| Operating System | Cisco | 6300 Series Access Points Firmware | All | All | All | All |
| Operating System | Cisco | 6300 Series Access Points Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | 6300 Series Access Points Firmware | All | All | All | All |
| Operating System | Cisco | 6300 Series Access Points Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 1542d | - | All | All | All |
| Hardware | Cisco | Aironet 1542d | - | All | All | All |
| Operating System | Cisco | Aironet 1542d Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1542d Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 1542d Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1542d Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 1542i | - | All | All | All |
| Hardware | Cisco | Aironet 1542i | - | All | All | All |
| Operating System | Cisco | Aironet 1542i Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1542i Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 1542i Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1542i Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 1562d | - | All | All | All |
| Hardware | Cisco | Aironet 1562d | - | All | All | All |
| Operating System | Cisco | Aironet 1562d Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1562d Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 1562d Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1562d Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 1562e | - | All | All | All |
| Hardware | Cisco | Aironet 1562e | - | All | All | All |
| Operating System | Cisco | Aironet 1562e Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1562e Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 1562e Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1562e Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 1562i | - | All | All | All |
| Hardware | Cisco | Aironet 1562i | - | All | All | All |
| Operating System | Cisco | Aironet 1562i Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1562i Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 1562i Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1562i Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 1815 | - | All | All | All |
| Hardware | Cisco | Aironet 1815 | - | All | All | All |
| Operating System | Cisco | Aironet 1815 Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1815 Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 1815 Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1815 Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 1830 | - | All | All | All |
| Hardware | Cisco | Aironet 1830 | - | All | All | All |
| Operating System | Cisco | Aironet 1830 Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1830 Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 1830 Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1830 Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 1840 | - | All | All | All |
| Hardware | Cisco | Aironet 1840 | - | All | All | All |
| Operating System | Cisco | Aironet 1840 Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1840 Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 1840 Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1840 Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 1850 | - | All | All | All |
| Hardware | Cisco | Aironet 1850 | - | All | All | All |
| Operating System | Cisco | Aironet 1850 Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1850 Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 1850 Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 1850 Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 2800e | - | All | All | All |
| Hardware | Cisco | Aironet 2800e | - | All | All | All |
| Operating System | Cisco | Aironet 2800e Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 2800e Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 2800e Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 2800e Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 2800i | - | All | All | All |
| Hardware | Cisco | Aironet 2800i | - | All | All | All |
| Operating System | Cisco | Aironet 2800i Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 2800i Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 2800i Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 2800i Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 3800e | - | All | All | All |
| Hardware | Cisco | Aironet 3800e | - | All | All | All |
| Operating System | Cisco | Aironet 3800e Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 3800e Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 3800e Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 3800e Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 3800i | - | All | All | All |
| Hardware | Cisco | Aironet 3800i | - | All | All | All |
| Operating System | Cisco | Aironet 3800i Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 3800i Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 3800i Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 3800i Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 3800p | - | All | All | All |
| Hardware | Cisco | Aironet 3800p | - | All | All | All |
| Operating System | Cisco | Aironet 3800p Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 3800p Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 3800p Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 3800p Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Aironet 4800 | - | All | All | All |
| Hardware | Cisco | Aironet 4800 | - | All | All | All |
| Operating System | Cisco | Aironet 4800 Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 4800 Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Aironet 4800 Firmware | All | All | All | All |
| Operating System | Cisco | Aironet 4800 Firmware | 8.10\(1.255\) | All | All | All |
| Hardware | Cisco | Catalyst Iw6300 | - | All | All | All |
| Hardware | Cisco | Catalyst Iw6300 | - | All | All | All |
| Operating System | Cisco | Catalyst Iw6300 Firmware | All | All | All | All |
| Operating System | Cisco | Catalyst Iw6300 Firmware | 8.10\(1.255\) | All | All | All |
| Operating System | Cisco | Catalyst Iw6300 Firmware | All | All | All | All |
| Operating System | Cisco | Catalyst Iw6300 Firmware | 8.10\(1.255\) | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Cisco Mobility Express Software Cross-Site Request Forgery Vulnerability | CISCO | tools.cisco.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.