wireless software vulnerabilities
vulnerabilities.aspcode.net
Searching wireless software vulnerabilities
Lucent/ORiNOCO WaveLAN cards generate predictab
Initialization
|
Lucent/ORiNOCO
|
predictable
|
generate
|
WaveLAN
|
Vector
|
cards
|
Lucent/ORiNOCO WaveLAN cards generate predictable Initialization Vector (IV) values for the Wireless Encryption Protocol (WEP) which allows remote attackers to quickly compile information that will let them decrypt messages.
A long 'synch' delay in Logitech wireless mice
man-in-the-middle
|
connections
|
receivers
|
keyboard
|
attacker
|
wireless
|
Logitech
|
'synch'
|
attack
|
hijack
|
allows
|
remote
|
delay
|
mice
|
long
|
via
|
A long 'synch' delay in Logitech wireless mice and keyboard receivers allows a remote attacker to hijack connections via a man-in-the-middle attack.
D-Link DWL-1000AP Firmware 3.2.28 #483 Wireless
DWL-1000AP
|
Firmware
|
D-Link
|
D-Link DWL-1000AP Firmware 3.2.28 #483 Wireless LAN Access Point stores the administrative password in plaintext in the default Management Information Base (MIB), which allows remote attackers to gain administrative privileges.
Belkin 54G (F5D7130) wireless router enables SN
Belkin
|
54G
|
Belkin 54G (F5D7130) wireless router enables SNMP by default in a manner that allows remote attackers to obtain sensitive information.
The SNMP service in the Belkin 54G (F5D7130) wi
service
|
Belkin
|
SNMP
|
54G
|
The SNMP service in the Belkin 54G (F5D7130) wireless router allows remote attackers to cause a denial of service via unknown vectors.
Unknown vulnerability in 3Com OfficeConnect Wir
OfficeConnect
|
vulnerability
|
Wireless
|
Unknown
|
Access
|
before
|
Point
|
3Com
|
11g
|
Unknown vulnerability in 3Com OfficeConnect Wireless 11g Access Point before 1.03.12 allows remote attackers to obtain sensitive information via the web interface.
SMC Wireless Router model SMC7904WBRA allows re
SMC7904WBRA
|
attackers
|
Wireless
|
service
|
remote
|
denial
|
Router
|
allows
|
cause
|
model
|
SMC
|
SMC Wireless Router model SMC7904WBRA allows remote attackers to cause a denial of service (reboot) by flooding the router with traffic.
Clipcomm CPW-100E VoIP 802.11b Wireless Handset
Wireless
|
firmware
|
CPW-100E
|
Clipcomm
|
running
|
Handset
|
80211b
|
Phone
|
VoIP
|
Clipcomm CPW-100E VoIP 802.11b Wireless Handset Phone running firmware 1.1.12 (051129) and CP-100E VoIP 802.11b Wireless Phone running firmware 1.1.60 allows remote attackers to gain unauthorized access via the debug service on TCP port 60023.
The backup configuration option in NETGEAR WGT6
configuration
|
information
|
privileges
|
sensitive
|
cleartext
|
passwords
|
attackers
|
Firewall
|
Wireless
|
NETGEAR
|
remote
|
obtain
|
option
|
backup
|
stores
|
Router
|
WGT624
|
allows
|
which
|
gain
|
The backup configuration option in NETGEAR WGT624 Wireless Firewall Router stores sensitive information in cleartext, which allows remote attackers to obtain passwords and gain privileges.
The web interface on Cisco IOS 12.3(8)JA and 12
interface
|
Cisco
|
IOS
|
web
|
The web interface on Cisco IOS 12.3(8)JA and 12.3(8)JA1, as used on the Cisco Wireless Access Point and Wireless Bridge, reconfigures itself when it is changed to use the "Local User List Only (Individual Passwords)" setting, which removes all security and password configurations and allows remote attackers to access the system.
Siemens Speedstream Wireless Router 2624 allows
Speedstream
|
Wireless
|
Siemens
|
Router
|
Siemens Speedstream Wireless Router 2624 allows local users to bypass authentication and access protected files by using the Universal Plug and Play UPnP/1.0 component.
Multiple stack-based buffer overflows in the Ai
stack-based
|
overflows
|
wireless
|
Multiple
|
AirPort
|
driver
|
buffer
|
Apple
|
Mac
|
Multiple stack-based buffer overflows in the AirPort wireless driver on Apple Mac OS X 10.3.9 and 10.4.7 allow physically proximate attackers to execute arbitrary code by injecting crafted frames into a wireless network.
Integer overflow in the API for the AirPort wir
overflow
|
wireless
|
AirPort
|
Integer
|
driver
|
Apple
|
Mac
|
API
|
Integer overflow in the API for the AirPort wireless driver on Apple Mac OS X 10.4.7 might allow physically proximate attackers to cause a denial of service (crash) or execute arbitrary code in third-party wireless software that uses the API via crafted frames.
Abidia (1) O-Anywhere and (2) Abidia Wireless t
Abidia
|
Abidia (1) O-Anywhere and (2) Abidia Wireless transmit authentication credentials in cleartext, which allows remote attackers to obtain sensitive information by sniffing.
Stack-based buffer overflow in the Broadcom BCM
Stack-based
|
BCMWL5SYS
|
wireless
|
Broadcom
|
overflow
|
driver
|
device
|
buffer
|
Stack-based buffer overflow in the Broadcom BCMWL5.SYS wireless device driver 3.50.21.10, as used in Cisco Linksys WPC300N Wireless-N Notebook Adapter before 4.100.15.5 and other products, allows remote attackers to execute arbitrary code via an 802.11 response frame containing a long SSID field.
Heap-based buffer overflow in the wireless driv
Heap-based
|
wireless
|
overflow
|
driver
|
buffer
|
Heap-based buffer overflow in the wireless driver (WG311ND5.SYS) 2.3.1.10 for NetGear WG311v1 wireless adapter allows remote attackers to execute arbitrary code via an 802.11 management frame with a long SSID.
D-LINK DWL-2000AP+ firmware 2.11 allows remote
DWL-2000AP+
|
firmware
|
D-LINK
|
D-LINK DWL-2000AP+ firmware 2.11 allows remote attackers to cause (1) a denial of service (device reset) via a flood of ARP replies on the wired or wireless (radio) link and (2) a denial of service (device crash) via a flood of ARP requests on the wireless link.
Multiple cross-site scripting (XSS) vulnerabili
cross-site
|
scripting
|
Multiple
|
Multiple cross-site scripting (XSS) vulnerabilities in (1) PreSearch.html and (2) PreSearch.class in Cisco Secure Access Control Server (ACS), VPN Client, Unified Personal Communicator, MeetingPlace, Unified MeetingPlace, Unified MeetingPlace Express, CallManager, IP Communicator, Unified Video Advantage, Unified Videoconferencing 35xx products, Unified Videoconferencing Manager, WAN Manager, Security Device Manager, Network Analysis Module (NAM), CiscoWorks and related products, Wireless LAN Solution Engine (WLSE), 2006 Wireless LAN Controllers (WLC), and Wireless Control System (WCS) allow remote attackers to inject arbitrary web script or HTML via the text field of the search form.
Unspecified vulnerability in the Wireless compo
vulnerability
|
Application
|
Unspecified
|
component
|
Wireless
|
Server
|
Oracle
|
Unspecified vulnerability in the Wireless component in Oracle Application Server 9.0.4.3 has unknown impact and attack vectors, aka AS03.
The conversion utility for converting CiscoWork
converting
|
CiscoWorks
|
conversion
|
Solution
|
Wireless
|
utility
|
Engine
|
LAN
|
The conversion utility for converting CiscoWorks Wireless LAN Solution Engine (WLSE) 4.1.91.0 and earlier to Cisco Wireless Control System (WCS) creates administrator accounts with default usernames and passwords, which allows remote attackers to gain privileges.
Software vulnerabilities results 1 to 20 of 129
Page:
1
2
3
4
5
...
7
►