CVE-2008-1113
N/A
N/A
Summary
Cisco Unified Wireless IP Phone 7921, when using Protected Extensible Authentication Protocol (PEAP), does not validate server certificates, which allows remote wireless access points to steal hashed passwords and conduct man-in-the-middle (MITM) attacks.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://blogs.zdnet.com/security/?p=896
- http://seclists.org/fulldisclosure/2008/Feb/0449.html
- http://securitytracker.com/id?1019494
- http://seclists.org/fulldisclosure/2008/Feb/0402.html
- http://www.securityfocus.com/bid/27935
- http://blogs.zdnet.com/security/?p=901
- http://secunia.com/advisories/29082
References
- http://blogs.zdnet.com/security/?p=896
- http://seclists.org/fulldisclosure/2008/Feb/0449.html
- http://securitytracker.com/id?1019494
- http://seclists.org/fulldisclosure/2008/Feb/0402.html
- http://www.securityfocus.com/bid/27935
- http://blogs.zdnet.com/security/?p=901
- http://secunia.com/advisories/29082
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.