CVE-2011-5053
CVE-2011-5053
The Wi-Fi Protected Setup (WPS) protocol, when the "external registrar" authentication method is used, does not properly inform clients about failed PIN authentication, which makes it easier for remote attackers to discover the PIN value, and consequently discover the Wi-Fi network password or reconfigure an access point, by reading EAP-NACK messages.
Productos afectados
n/a · n/aPoCs públicas encontradas — 1
exploitdbwww.exploit-db.com/exploits/18291no verificado⚠ Recursos públicos, para evaluar la exposición de sistemas que controlas o estás autorizado a probar. Prueba solo con autorización.
¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://code.google.com/p/reaver-wps/http://sviehb.files.wordpress.com/2011/12/viehboeck_wps.pdfhttp://sviehb.wordpress.com/2011/12/27/wi-fi-protected-setup-pin-brute-force-vulnerability/http://tools.cisco.com/security/center/content/CiscoSecurityResponse/cisco-sr-20120111-wpshttp://www.kb.cert.org/vuls/id/723755http://www.us-cert.gov/cas/techalerts/TA12-006A.html