Executive Summary
Summary | |
---|---|
Title | Multiple Vulnerabilities in Cisco Wireless LAN Controllers |
Informations | |||
---|---|---|---|
Name | cisco-sa-20090204-wlc | First vendor Publication | 2008-11-03 |
Vendor | Cisco | Last vendor Modification | 2009-02-04 |
Severity (Vendor) | N/A | Revision | 1.0 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:S/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 9 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Low |
Cvss Expoit Score | 8 | Authentication | Requires single instance |
Calculate full CVSS 2.0 Vectors scores |
Detail
Multiple vulnerabilities exist in the Cisco Wireless LAN Controllers (WLCs), Cisco Catalyst 6500 Wireless Services Modules (WiSMs), and Cisco Catalyst 3750 Integrated Wireless LAN Controllers. This security advisory outlines details of the following vulnerabilities: * Denial of Service Vulnerabilities (total of three) These vulnerabilities are independent of each other. Cisco has released free software updates that address these vulnerabilities. There are no workarounds available for these vulnerabilities. |
Original Source
Url : http://www.cisco.com/en/US/products/products_security_advisory09186a0080a6 (...) |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
75 % | CWE-20 | Improper Input Validation |
25 % | CWE-264 | Permissions, Privileges, and Access Controls |
CPE : Common Platform Enumeration
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
52375 | Cisco Multiple Wireless Products Unspecified Local Privilege Escalation |
52374 | Cisco Multiple Wireless Products Malformed IP Packet Processing Remote DoS |
52373 | Cisco Multiple Wireless Products login.html Malformed POST Request Remote DoS |
52372 | Cisco Multiple Wireless Products w/ Webauth Vulnerability Scan Remote DoS |