A critical flaw in Aironet access points (APs) can be exploited by a remote attacker to gain unauthorized access to vulnerable devices. The flaw is caused by insufficient access control for some URLs, an attacker could exploit the flaw by simply requesting the unprotected URLs. Cisco has already released software updates that address the flaw, the company pointed out that there are no workarounds that fix this vulnerability. Cisco released versions 8.5.151.0, 8.8.125.0 and 8.9.111.0.”]
Source: https://securityaffairs.co/wordpress/92610/hacking/cisco-aironet-aps-flaws.html

