HIGH · 7.5

CVE-2007-0932

The (1) Aruba Mobility Controllers 200, 600, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 do not properly implement authentication and privilege assignment for the guest acc...

Vulnerability Description

The (1) Aruba Mobility Controllers 200, 600, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 do not properly implement authentication and privilege assignment for the guest account, which allows remote attackers to access administrative interfaces or the WLAN.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
Alcatel-LucentOmniaccess Wireless43xx
ArubaMobility Controller200

Related Weaknesses (CWE)

References

FAQ

What is CVE-2007-0932?

CVE-2007-0932 is a vulnerability with a CVSS score of 7.5 (HIGH). The (1) Aruba Mobility Controllers 200, 600, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 do not properly implement authentication and privilege assignment for the guest acc...

How severe is CVE-2007-0932?

CVE-2007-0932 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-0932?

Check the references section above for vendor advisories and patch information. Affected products include: Alcatel-Lucent Omniaccess Wireless, Aruba Mobility Controller.