VendorsCiscowireless_lan_controller_softwareany version
Vulnerabilities

Cisco Wireless any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

31CVEs
CVE-2016-1363
Buffer overflow in the redirection functionality in Cisco Wireless LAN Controller (WLC) Software 7.2 through 7.4 before 7.4.140.0(MD) and 7.5 through 8.0 before 8.0.115.0(ED) allows remote attackers to execute arbitrary code via a crafted HTTP request, aka Bug ID CSCus25617.
Published 2016-04-21 · Modified
10.0EPSS 0.056
CVE-2019-1797
Cisco Wireless LAN Controller Software Cross-Site Request Forgery Vulnerability
Published 2019-04-18 · Modified
8.8EPSS 0.007
CVE-2020-3560
Cisco Aironet Access Points UDP Flooding Denial of Service Vulnerability
Published 2020-09-24 · Modified
8.6EPSS 0.014
CVE-2024-20271
A vulnerability in the IP packet processing of Cisco Access Point (AP) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient input validation of certain IPv4 packets. An attacker could exploit this vulnerability by sending a crafted IPv4 packet either to or through an affected device. A successful exploit could allow the attacker to cause an affected device to reload unexpectedly, resulting in a DoS condition. To successfully exploit this vulnerability, the attacker does not need to be associated with the affected AP. This vulnerability cannot be exploited by sending IPv6 packets.
Published 2024-03-27 · Analyzed
8.6EPSS 0.006
CVE-2018-0417
Cisco Wireless LAN Controller Software GUI Privilege Escalation Vulnerability
Published 2018-10-17 · Modified
7.8EPSS 0.032
CVE-2017-12280
A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) Discovery Request parsing functionality of Cisco Wireless LAN Controllers could allow an unauthenticated, remote attacker to cause an affected device to restart unexpectedly, resulting in a denial of service (DoS) condition. The vulnerability is due to incomplete input validation of fields in CAPWAP Discovery Request packets by the affected device. An attacker could exploit this vulnerability by sending crafted CAPWAP Discovery Request packets to an affected device. A successful exploit could allow the attacker to cause the affected device to restart unexpectedly, resulting in a DoS condition. Cisco Bug IDs: CSCvb95842.
Published 2017-11-02 · Modified
7.8EPSS 0.026
CVE-2021-1419
Cisco Access Points SSH Management Privilege Escalation Vulnerability
Published 2021-09-23 · Modified
7.8EPSS 0.002
CVE-2019-15276
Cisco Wireless LAN Controller HTTP Parsing Engine Denial of Service Vulnerability
Published 2019-11-26 · Modified
7.71 PoCEPSS 0.463
CVE-2018-0442
Cisco Wireless LAN Controller Software Control and Provisioning of Wireless Access Points Protocol Information Disclosure Vulnerability
Published 2018-10-17 · Modified
7.5EPSS 0.033
CVE-2021-1437
Cisco Aironet Access Points FlexConnect Upgrade Information Disclosure Vulnerability
Published 2021-03-24 · Modified
7.5EPSS 0.015
CVE-2017-12275
A vulnerability in the implementation of 802.11v Basic Service Set (BSS) Transition Management functionality in Cisco Wireless LAN Controllers could allow an unauthenticated, adjacent attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. The vulnerability is due to insufficient input validation of 802.11v BSS Transition Management Response packets that an affected device receives from wireless clients. An attacker could exploit this vulnerability by sending a malformed 802.11v BSS Transition Management Response packet to an affected device. A successful exploit could allow the attacker to cause the affected device to reload unexpectedly, resulting in a DoS condition. Cisco Bug IDs: CSCvb57803.
Published 2017-11-02 · Modified
7.4EPSS 0.007
CVE-2019-1799
Cisco Wireless LAN Controller Software IAPP Message Handling Denial of Service Vulnerabilities
Published 2019-04-18 · Modified
7.4EPSS 0.006
CVE-2019-1796
Cisco Wireless LAN Controller Software IAPP Message Handling Denial of Service Vulnerabilities
Published 2019-04-18 · Modified
7.4EPSS 0.006
CVE-2019-1800
Cisco Wireless LAN Controller Software IAPP Message Handling Denial of Service Vulnerabilities
Published 2019-04-18 · Modified
7.4EPSS 0.005
CVE-2022-20769
Cisco Wireless LAN Controller AireOS Software FIPS Mode Denial of Service Vulnerability
Published 2022-09-30 · Modified
7.4EPSS 0.005
CVE-2024-20354
A vulnerability in the handling of encrypted wireless frames of Cisco Aironet Access Point (AP) Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on the affected device. This vulnerability is due to incomplete cleanup of resources when dropping certain malformed frames. An attacker could exploit this vulnerability by connecting as a wireless client to an affected AP and sending specific malformed frames over the wireless connection. A successful exploit could allow the attacker to cause degradation of service to other clients, which could potentially lead to a complete DoS condition.
Published 2024-03-27 · Analyzed
7.4EPSS 0.003
CVE-2018-0248
Cisco Wireless LAN Controller Software GUI Configuration Denial of Service Vulnerabilities
Published 2019-04-17 · Modified
6.8EPSS 0.020
CVE-2019-1830
Cisco Wireless LAN Controller Locally Significant Certificate Denial of Service Vulnerability
Published 2019-04-18 · Modified
6.8EPSS 0.012
CVE-2021-1449
Cisco Access Point Software Arbitrary Code Execution Vulnerability
Published 2021-03-24 · Modified
6.7EPSS 0.003
CVE-2023-20097
Cisco Access Point Software Command Injection Vulnerability
Published 2023-03-23 · Modified
6.7EPSS 0.002
CVE-2023-20056
Cisco Access Point Software Denial of Service Vulnerability
Published 2023-03-23 · Modified
6.5EPSS 0.003
CVE-2017-12278
A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco Wireless LAN Controllers could allow an authenticated, remote attacker to cause an affected device to restart, resulting in a denial of service (DoS) condition. The vulnerability is due to a memory leak that occurs on an affected device after the device fails to deallocate a buffer that is used when certain MIBs are polled. An attacker who knows the SNMP Version 2 SNMP Read string or has valid SNMP Version 3 credentials for an affected device could repeatedly poll the affected MIB object IDs (OIDs) and consume available memory on the device. When memory is sufficiently depleted on the device, the device will restart, resulting in a DoS condition. Cisco Bug IDs: CSCvc71674.
Published 2017-11-02 · Modified
6.3EPSS 0.016
CVE-2007-2040
Cisco Aironet 1000 Series and 1500 Series Lightweight Access Points before 3.2.185.0, and 4.0.x before 4.0.206.0, have a hard-coded password, which allows attackers with physical access to perform arbitrary actions on the device, aka Bug ID CSCsg15192.
Published 2007-04-16 · Modified
6.2EPSS 0.004
CVE-2007-2039
The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.171.5, 4.0.x before 4.0.206.0, and 4.1.x allows remote attackers on a local wireless network to cause a denial of service (loss of packet forwarding) via (1) crafted SNAP packets, (2) malformed 802.11 traffic, or (3) packets with certain header length values, aka Bug IDs CSCsg15901 and CSCsh10841.
Published 2007-04-16 · Modified
6.1EPSS 0.012
CVE-2017-12282
A vulnerability in the Access Network Query Protocol (ANQP) ingress frame processing functionality of Cisco Wireless LAN Controllers could allow an unauthenticated, Layer 2 RF-adjacent attacker to cause an affected device to restart unexpectedly, resulting in a denial of service (DoS) condition. The vulnerability is due to incomplete input validation of ANQP query frames by the affected device. An attacker could exploit this vulnerability by sending a malformed ANQP query frame to an affected device that is on an RF-adjacent network. A successful exploit could allow the attacker to cause the affected device to restart unexpectedly, resulting in a DoS condition. This vulnerability affects Cisco Wireless LAN Controllers that are running a vulnerable release of Cisco WLC Software and are configured to support Hotspot 2.0. Cisco Bug IDs: CSCve05779.
Published 2017-11-02 · Modified
6.1EPSS 0.006
CVE-2013-1141
The mDNS snooping functionality on Cisco Wireless LAN Controller (WLC) devices with software 7.4.1.54 and earlier does not properly manage buffers, which allows remote authenticated users to cause a denial of service (device reload) via crafted mDNS packets, aka Bug ID CSCue04153.
Published 2013-02-28 · Modified
6.1EPSS 0.006
CVE-2023-20268
Cisco Access Point Software Uncontrolled Resource Consumption Vulnerability
Published 2023-09-27 · Modified
4.7EPSS 0.002
CVE-2019-15266
Cisco Wireless LAN Controller Path Traversal Vulnerability
Published 2019-10-16 · Modified
4.4EPSS 0.007
CVE-2021-1423
Cisco Aironet Access Points Arbitrary File Overwrite Vulnerability
Published 2021-03-24 · Modified
4.4EPSS 0.002
CVE-2015-0690
Cross-site scripting (XSS) vulnerability in the HTML help system on Cisco Wireless LAN Controller (WLC) devices before 8.0 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCun95178.
Published 2015-04-07 · Modified
4.3EPSS 0.009
CVE-2007-2037
Cisco Wireless LAN Controller (WLC) before 3.2.116.21, and 4.0.x before 4.0.155.0, allows remote attackers on a local network to cause a denial of service (device crash) via malformed Ethernet traffic.
Published 2007-04-16 · Modified
2.9EPSS 0.009