CVE-2023-20268

Severity
4.7MEDIUM
EPSS
0.0%
top 88.56%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 27

Description

A vulnerability in the packet processing functionality of Cisco access point (AP) software could allow an unauthenticated, adjacent attacker to exhaust resources on an affected device. This vulnerability is due to insufficient management of resources when handling certain types of traffic. An attacker could exploit this vulnerability by sending a series of specific wireless packets to an affected device. A successful exploit could allow the attacker to consume resources on an affected device. A

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:LExploitability: 2.8 | Impact: 1.4

Affected Packages7 packages

🔴Vulnerability Details

2
CVEList
Cisco Access Point Software Uncontrolled Resource Consumption Vulnerability2023-09-27
GHSA
GHSA-p572-r8g2-hv9h: A vulnerability in the packet processing functionality of Cisco access point (AP) software could allow an unauthenticated, adjacent attacker to exhaus2023-09-27

📋Vendor Advisories

1
Cisco
Cisco Access Point Software Uncontrolled Resource Consumption Vulnerability2023-09-27
CVE-2023-20268 (MEDIUM CVSS 4.7) | A vulnerability in the packet proce | cvebase.io