5.3
CVSSv3

CVE-2016-1334

Published: 17/02/2016 Updated: 06/12/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cisco Small Business 500 Wireless Access Point devices with firmware 1.0.4.4 allow remote malicious users to set the system time via a crafted POST request, aka Bug ID CSCuy01457.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco small business wireless access points firmware 1.0.4.4

Vendor Advisories

A vulnerability in the web interface that is used to update the system time on Cisco Small Business 500 Series Wireless Access Point devices could allow an unauthenticated, remote attacker to impact the integrity of a system The vulnerability is due to insufficient validation of user-controlled parameters in HTTP POST requests An attacker could ...