Vulnerabilities > Cisco > Aironet 1850 Firmware

DATE CVE VULNERABILITY TITLE RISK
2020-04-15 CVE-2020-3261 Cross-Site Request Forgery (CSRF) vulnerability in Cisco products
A vulnerability in the web-based management interface of Cisco Mobility Express Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system.
network
cisco CWE-352
4.3
2020-04-15 CVE-2020-3260 Resource Exhaustion vulnerability in Cisco products
A vulnerability in Cisco Aironet Series Access Points Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device.
low complexity
cisco CWE-400
3.3
2019-10-16 CVE-2019-15264 Resource Exhaustion vulnerability in Cisco products
A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol implementation of Cisco Aironet and Catalyst 9100 Access Points (APs) could allow an unauthenticated, adjacent attacker to cause an affected device to restart unexpectedly, resulting in a denial of service (DoS) condition.
low complexity
cisco CWE-400
6.1
2019-10-16 CVE-2019-15261 Improper Input Validation vulnerability in Cisco products
A vulnerability in the Point-to-Point Tunneling Protocol (PPTP) VPN packet processing functionality in Cisco Aironet Access Points (APs) could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-20
7.8