VendorsCiscocatalyst_9800-80_wireless_controllerany version
Vulnerabilities

Cisco Catalyst 9800-80 Wireless Controller - any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2021-34770
Cisco IOS XE Software for Catalyst 9000 Family Wireless Controllers CAPWAP Remote Code Execution Vulnerability
Published 2021-09-23 · Analyzed
10.0EPSS 0.030
CVE-2021-34768
Cisco IOS XE Software for Catalyst 9000 Family Wireless Controllers CAPWAP Denial of Service Vulnerabilities
Published 2021-09-23 · Modified
8.6EPSS 0.014
CVE-2021-34769
Cisco IOS XE Software for Catalyst 9000 Family Wireless Controllers CAPWAP Denial of Service Vulnerabilities
Published 2021-09-23 · Modified
8.6EPSS 0.014
CVE-2022-20919
Cisco IOS and IOS XE Software Common Industrial Protocol Request Denial of Service Vulnerability
Published 2022-09-30 · Modified
8.6EPSS 0.011
CVE-2017-12231
A vulnerability in the implementation of Network Address Translation (NAT) functionality in Cisco IOS 12.4 through 15.6 could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to the improper translation of H.323 messages that use the Registration, Admission, and Status (RAS) protocol and are sent to an affected device via IPv4 packets. An attacker could exploit this vulnerability by sending a crafted H.323 RAS packet through an affected device. A successful exploit could allow the attacker to cause the affected device to crash and reload, resulting in a DoS condition. This vulnerability affects Cisco devices that are configured to use an application layer gateway with NAT (NAT ALG) for H.323 RAS messages. By default, a NAT ALG is enabled for H.323 RAS messages. Cisco Bug IDs: CSCvc57217.
Published 2017-09-28 · Analyzed
7.8KEVEPSS 0.071
CVE-2018-0154
A vulnerability in the crypto engine of the Cisco Integrated Services Module for VPN (ISM-VPN) running Cisco IOS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient handling of VPN traffic by the affected device. An attacker could exploit this vulnerability by sending crafted VPN traffic to an affected device. A successful exploit could allow the attacker to cause the affected device to hang or crash, resulting in a DoS condition. Cisco Bug IDs: CSCvd39267.
Published 2018-03-28 · Analyzed
7.8KEVEPSS 0.071
CVE-2023-20065
A vulnerability in the Cisco IOx application hosting subsystem of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privileges to root on an affected device. This vulnerability is due to insufficient restrictions on the hosted application. An attacker could exploit this vulnerability by logging in to and then escaping the Cisco IOx application container. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with root privileges.
Published 2023-03-23 · Modified
7.8EPSS 0.002
CVE-2019-1649
Cisco Secure Boot Hardware Tampering Vulnerability
Published 2019-05-13 · Modified
7.2EPSS 0.006
CVE-2023-20100
Cisco IOS XE Software for Wireless LAN Controllers CAPWAP Join Denial of Service Vulnerability
Published 2023-03-23 · Modified
6.8EPSS 0.008
CVE-2023-20066
Cisco IOS XE Software Web UI Path Traversal Vulnerability
Published 2023-03-23 · Modified
6.5EPSS 0.017
CVE-2022-20810
Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family SNMP Information Disclosure Vulnerability
Published 2022-09-30 · Modified
6.5EPSS 0.007