Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2010-1804


Unspecified vulnerability in the network bridge functionality on the Apple Time Capsule, AirPort Extreme Base Station, and AirPort Express Base Station with firmware before 7.5.2 allows remote attackers to cause a denial of service (networking outage) via a crafted DHCP reply.


Published

2010-12-22T03:00:01.437

Last Modified

2025-04-11T00:51:21.963

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 7.1 (HIGH)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:N/I:N/A:C

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: COMPLETE
Exploitability Score

8.6

Impact Score

6.9

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Hardware apple airport_express_base_station_firmware ≤ 7.4.2 Yes
Hardware apple airport_express_base_station_firmware 3.84 Yes
Hardware apple airport_express_base_station_firmware 4.0.9 Yes
Hardware apple airport_express_base_station_firmware 6.1 Yes
Hardware apple airport_express_base_station_firmware 6.3 Yes
Hardware apple airport_express_base_station_firmware 7.3.2 Yes
Hardware apple airport_express_base_station_firmware 7.4.1 Yes
Hardware apple airport_extreme_base_station_firmware 5.5 Yes
Hardware apple airport_extreme_base_station_firmware 5.7 Yes
Hardware apple airport_express * Yes
Hardware apple airport_extreme * Yes
Hardware apple time_capsule * Yes

References