cbcvebase.

Cisco Aironet Access Point Software vulnerabilities

24 known vulnerabilities affecting cisco/aironet_access_point_software.

Total CVEs
24
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH13MEDIUM10

Vulnerabilities

Page 2 of 2
CVE-2018-0250P4MEDIUMCVSS 4.1v8.2\(160.0\)v8.4\(100.0\)+1 more2018-05-02
CVE-2018-0250 [MEDIUM] CWE-693 CVE-2018-0250: A vulnerability in Central Web Authentication (CWA) with FlexConnect Access Points (APs) for Cisco A A vulnerability in Central Web Authentication (CWA) with FlexConnect Access Points (APs) for Cisco Aironet 1560, 1810, 1810w, 1815, 1830, 1850, 2800, and 3800 Series APs could allow an authenticated, adjacent attacker to bypass a configured FlexConnect access control list (ACL). The vulnerability is due to the AP ignoring the ACL download from the cli
nvd
CVE-2016-9221P4MEDIUMCVSS 4.3v8.2\(121.12\)v8.4\(1.82\)2017-01-26
CVE-2016-9221 [MEDIUM] CWE-399 CVE-2016-9221: A Denial of Service Vulnerability in 802.11 ingress connection authentication handling for the Cisco A Denial of Service Vulnerability in 802.11 ingress connection authentication handling for the Cisco Mobility Express 2800 and 3800 Access Points (APs) could allow an unauthenticated, adjacent attacker to cause authentication to fail. Affected Products: This vulnerability affects Cisco Mobility Express 2800 Series and 3800 Series Access Points when co
nvd
CVE-2018-0249P4MEDIUMCVSS 4.3v8.2\(161.0\)2018-05-02
CVE-2018-0249 [MEDIUM] CWE-20 CVE-2018-0249: A vulnerability when handling incoming 802.11 Association Requests for Cisco Aironet 1800 Series Acc A vulnerability when handling incoming 802.11 Association Requests for Cisco Aironet 1800 Series Access Point (APs) on Qualcomm Atheros (QCA) based hardware platforms could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected system. A successful exploit could prevent new clients from joining the AP. T
nvd
CVE-2016-9220P4MEDIUMCVSS 4.3v8.2\(130.0\)2017-01-26
CVE-2016-9220 [MEDIUM] CWE-399 CVE-2016-9220: A Denial of Service Vulnerability in 802.11 ingress packet processing of the Cisco Mobility Express A Denial of Service Vulnerability in 802.11 ingress packet processing of the Cisco Mobility Express 2800 and 3800 Access Points (APs) could allow an unauthenticated, adjacent attacker to cause the connection table to be full of invalid connections and be unable to process new incoming requests. More Information: CSCvb66659. Known Affected Releases: 8.2
nvd
Cisco Aironet Access Point Software vulnerabilities | cvebase