CVE-2018-0248

Severity
4.9MEDIUM
EPSS
0.3%
top 45.50%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 17
Latest updateMay 13

Description

A vulnerability in the administrative GUI configuration feature of Cisco Wireless LAN Controller (WLC) Software could allow an aUTHENTICated, remote attacker to cause the device to reload unexpectedly during device configuration when the administrator is using this GUI, causing a denial of service (DoS) condition on an affected device. The attacker would need to have valid administrator credentials on the device. This vulnerability is due to incomplete input validation for unexpected configurati

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:HExploitability: 2.3 | Impact: 4.0

Affected Packages2 packages

CVEListV5cisco/cisco_wireless_lan_controller_(wlc)unspecified8.3.150.0+2

🔴Vulnerability Details

2
GHSA
GHSA-9qwv-6vp9-5hpm: A vulnerability in the administrative GUI configuration feature of Cisco Wireless LAN Controller (WLC) Software could allow an aUTHENTICated, remote a2022-05-13
CVEList
Cisco Wireless LAN Controller Software GUI Configuration Denial of Service Vulnerabilities2019-04-17

📋Vendor Advisories

1
Cisco
Cisco Wireless LAN Controller Software GUI Configuration Denial of Service Vulnerabilities2019-04-17
CVE-2018-0248 (MEDIUM CVSS 4.9) | A vulnerability in the administrati | cvebase.io