VulnerabilityModified
CVE-2009-2822
AirPort Utility before 5.5.1 for Apple AirPort Base Station does not properly distribute MAC address ACLs to network extenders, which allows remote attackers to bypass intended access restrictions via an 802.11 authentication frame.
MEDIUM 6.8EPSS 1.54%
Does this matter?
Lower severity and a low EPSS score (1.54%). Track it; it rarely justifies an emergency change on its own.
Description
AirPort Utility before 5.5.1 for Apple AirPort Base Station does not properly distribute MAC address ACLs to network extenders, which allows remote attackers to bypass intended access restrictions via an 802.11 authentication frame.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 1.54% probability · 73th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-264
- Affected
- apple/airport utility
- Source
- cve@mitre.org
References
- http://lists.apple.com/archives/security-announce/2010//Mar/msg00004.htmlPatch, Vendor Advisory
- http://secunia.com/advisories/39160Vendor Advisory
- http://securitytracker.com/id?1023801
- http://support.apple.com/kb/HT3958Patch, Vendor Advisory
- http://www.osvdb.org/63420
- http://www.securityfocus.com/bid/39134Patch
- http://www.vupen.com/english/advisories/2010/0778Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/57434
- http://lists.apple.com/archives/security-announce/2010//Mar/msg00004.htmlPatch, Vendor Advisory
- http://secunia.com/advisories/39160Vendor Advisory
- http://securitytracker.com/id?1023801
- http://support.apple.com/kb/HT3958Patch, Vendor Advisory
- http://www.osvdb.org/63420
- http://www.securityfocus.com/bid/39134Patch
- http://www.vupen.com/english/advisories/2010/0778Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/57434
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.