CVE-2016-1418Improper Input Validation in Cisco Aironet Access Point Software

Severity
7.8HIGHNVD
EPSS
0.1%
top 77.02%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 8
Latest updateMay 17

Description

Cisco Aironet Access Point Software 8.2(100.0) on 1830e, 1830i, 1850e, 1850i, 2800, and 3800 access points allows local users to obtain Linux root access via crafted CLI command parameters, aka Bug ID CSCuy64037.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-9jph-wqrp-7q3w: Cisco Aironet Access Point Software 82022-05-17
CVEList
CVE-2016-1418: Cisco Aironet Access Point Software 82016-06-08

📋Vendor Advisories

1
Cisco
Cisco Aironet Access Points Command-Line Interpreter Linux Shell Command Injection Vulnerability2016-06-06
CVE-2016-1418 — Improper Input Validation in Cisco | cvebase