Cisco Wireless Lan Controller vulnerabilities
25 known vulnerabilities affecting cisco/cisco_wireless_lan_controller.
Total CVEs
25
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH10MEDIUM14
Vulnerabilities
Page 2 of 2
CVE-2019-1830P4MEDIUMCVSS 4.9v8.32019-04-18
CVE-2019-1830 [MEDIUM] CWE-20 CVE-2019-1830: A vulnerability in Locally Significant Certificate (LSC) management for the Cisco Wireless LAN Contr
A vulnerability in Locally Significant Certificate (LSC) management for the Cisco Wireless LAN Controller (WLC) could allow an authenticated, remote attacker to cause the device to unexpectedly restart, which causes a denial of service (DoS) condition. The attacker would need to have valid administrator credentials. The vulnerability is due to incorrec
nvd
CVE-2023-20251P4MEDIUMCVSS 5.3v8.10.162.0v8.10.151.0+6 more2023-09-27
CVE-2023-20251 [MEDIUM] CWE-401 CVE-2023-20251: A vulnerability in the memory buffer of Cisco Wireless LAN Controller (WLC) AireOS Software could al
A vulnerability in the memory buffer of Cisco Wireless LAN Controller (WLC) AireOS Software could allow an unauthenticated, adjacent attacker to cause memory leaks that could eventually lead to a device reboot.
This vulnerability is due to memory leaks caused by multiple clients connecting under specific conditions. An attacker could exploit this vu
nvd
CVE-2019-1805P4MEDIUMCVSS 4.3≥ unspecified, < 8.5(140.0)2019-04-18
CVE-2019-1805 [MEDIUM] CWE-284 CVE-2019-1805: A vulnerability in certain access control mechanisms for the Secure Shell (SSH) server implementatio
A vulnerability in certain access control mechanisms for the Secure Shell (SSH) server implementation for Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, adjacent attacker to access a CLI instance on an affected device. The vulnerability is due to a lack of proper input- and validation-checking mechanisms for inbound SSH c
nvd
CVE-2018-0388P4MEDIUMCVSS 4.8vn/a2018-10-17
CVE-2018-0388 [MEDIUM] CWE-79 CVE-2018-0388: A vulnerability in the web-based interface of Cisco Wireless LAN Controller (WLC) Software could all
A vulnerability in the web-based interface of Cisco Wireless LAN Controller (WLC) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against the user of the web-based interface of an affected system. The vulnerability is due to insufficient validation of user-supplied input by the web-based interface.
nvd
CVE-2019-15266P4MEDIUMCVSS 4.4≥ unspecified, < n/a2019-10-16
CVE-2019-15266 [MEDIUM] CWE-22 CVE-2019-15266: A vulnerability in the CLI of Cisco Wireless LAN Controller (WLC) Software could allow an authentica
A vulnerability in the CLI of Cisco Wireless LAN Controller (WLC) Software could allow an authenticated, local attacker to view system files that should be restricted. This vulnerability is due to improper sanitization of user-supplied input in command-line parameters that describe filenames. An attacker could exploit this vulnerability by using dire
nvd
← Previous2 / 2