cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1953
Views
0
Helpful
7
Replies

CSCuw06153 - unauthorized configuration change for web management

An attacker who can connect to an affected device could exploit this vulnerability.

I'm missing the information about how this bug can be exploited. Can this be exploited trough admin gui? ssh access? captive portal login? capwap tunnel to WLC?

7 Replies 7

Heinz Kern
Level 1
Level 1

yes, me too.

Craig Le-Butt
Level 1
Level 1

and me

Freerk Terpstra
Level 7
Level 7

Maybe someone from Cisco can reply to this, but I'm afraid that not much info will be given because of the risk that exploits will show up in the wild. From what I have found is having IP access to the management-plane of the WLC engough. If you have this secured by a firewall you are still vulnerable if you are using local webauth for layer 3 authentication.

Please rate useful posts... :-)

Leo Laohoo
Hall of Fame
Hall of Fame

lee-taehee
Level 1
Level 1

and me , too

> CSCuw06153 - unauthorized configuration change for web management

it is not clear in the bug description

the title refers to the admin GUI.

Ralph Olsen
Level 1
Level 1

If it was Webauth they would ask you to disable it as a workaround.

There is no workaround.

No info = Not good news.

Assume it is any IP packet that transit the WLC.

/Ralph