CVE-2019-1654 is a vulnerability in the development shell authentication of Cisco Aironet Series Access Points (APs) running the Cisco AP-COS operating system. It allows an authenticated, local attacker with valid device credentials to gain root access to the underlying Linux OS by exploiting improper input validation at the CLI authentication prompt. This vulnerability affects software versions prior to 8.3.150.0, 8.5.135.0, and 8.8.100.0 across various Aironet models. The vulnerability has a CVSS score of 7.8 (High), indicating a significant impact with high confidentiality, integrity, and availability concerns. The attack vector is local, and while it requires prior authentication, the complexity is low, as it involves crafting specific CLI input. Currently, there is no evidence of active exploitation, and no public exploit code (Metasploit, Nuclei, ExploitDB) is available. Community discussion and media coverage for this CVE are minimal, suggesting a lack of widespread attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 8.3.150.0CPE matchmatch criteria | cpe:2.3:o:cisco:ap-cos:*:*:*:*:*:*:*:* | ||
>= 8.4.100.0, < 8.5.135.0CPE matchmatch criteria | cpe:2.3:o:cisco:ap-cos:*:*:*:*:*:*:*:* | ||
>= 8.5.140.0, < 8.8.100.0CPE matchmatch criteria | cpe:2.3:o:cisco:ap-cos:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.