PT-2001-1392 · Cisco · Cisco 340-Series Aironet Access Point
Published
2001-01-01
·
Updated
2008-09-05
·
CVE-2001-0161
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
Cisco 340-series Aironet access point version 11.01
Description:
The issue concerns the use of WEP encryption in the affected device. Specifically, it does not utilize 6 of the 24 available IV bits for WEP encryption. This oversight makes it easier for remote attackers to mount brute force attacks.
Recommendations:
For version 11.01, consider updating the firmware to a version that properly utilizes all available IV bits for WEP encryption to prevent brute force attacks.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cisco 340-Series Aironet Access Point