VYPR
Medium severity6.5NVD Advisory· Published Apr 15, 2020· Updated Jun 17, 2026

CVE-2020-3261

CVE-2020-3261

Description

A vulnerability in the web-based management interface of Cisco Mobility Express Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protections for the web-based management interface on an affected device. An attacker could exploit this vulnerability by persuading a user with an active session on an affected device to follow a malicious link. A successful exploit could allow the attacker to perform arbitrary actions, including modifying the configuration, with the privilege level of the user.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

36
  • cpe:2.3:o:cisco:6300_series_access_points_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:6300_series_access_points_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:6300_series_access_points_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_1542d_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_1542d_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_1542d_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_1542i_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_1542i_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_1542i_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_1562d_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_1562d_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_1562d_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_1562e_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_1562e_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_1562e_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_1562i_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_1562i_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_1562i_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_1815_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_1815_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_1815_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_1830_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_1830_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_1830_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_1840_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_1840_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_1840_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_1850_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_1850_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_1850_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_2800e_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_2800e_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_2800e_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_2800i_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_2800i_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_2800i_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_3800e_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_3800e_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_3800e_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_3800i_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_3800i_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_3800i_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_3800p_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_3800p_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_3800p_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:aironet_4800_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:aironet_4800_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:aironet_4800_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • cpe:2.3:o:cisco:catalyst_iw6300_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:cisco:catalyst_iw6300_firmware:*:*:*:*:*:*:*:*range: >=8.0,<8.8.130.0
    • cpe:2.3:o:cisco:catalyst_iw6300_firmware:8.10\(1.255\):*:*:*:*:*:*:*
  • Cisco/Cisco Mobility Expressv5
    Range: n/a

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.