Vulnerabilities > Cisco > Wireless LAN Controller

DATE CVE VULNERABILITY TITLE RISK
2014-03-06 CVE-2014-0706 Resource Management Errors vulnerability in Cisco products
Cisco Wireless LAN Controller (WLC) devices 7.2 before 7.2.115.2, 7.3, and 7.4 before 7.4.110.0 allow remote attackers to cause a denial of service (device restart) via a crafted 802.11 Ethernet frame, aka Bug ID CSCue87929.
network
low complexity
cisco CWE-399
7.8
2014-03-06 CVE-2014-0705 Resource Management Errors vulnerability in Cisco products
The multicast listener discovery (MLD) service on Cisco Wireless LAN Controller (WLC) devices 7.2, 7.3, 7.4 before 7.4.121.0, and 7.5, when MLDv2 Snooping is enabled, allows remote attackers to cause a denial of service (device restart) via a malformed IPv6 MLDv2 packet, aka Bug ID CSCuh74233.
network
cisco CWE-399
7.1
2014-03-06 CVE-2014-0704 Resource Management Errors vulnerability in Cisco products
The IGMP implementation on Cisco Wireless LAN Controller (WLC) devices 4.x, 5.x, 6.x, 7.0 before 7.0.250.0, 7.1, 7.2, and 7.3, when IGMPv3 Snooping is enabled, allows remote attackers to cause a denial of service (memory over-read and device restart) via a crafted field in an IGMPv3 message, aka Bug ID CSCuh33240.
network
cisco CWE-399
7.1
2014-03-06 CVE-2014-0703 Race Condition vulnerability in Cisco products
Cisco Wireless LAN Controller (WLC) devices 7.4 before 7.4.110.0 distribute Aironet IOS software with a race condition in the status of the administrative HTTP server, which allows remote attackers to bypass intended access restrictions by connecting to an Aironet access point on which this server had been disabled ineffectively, aka Bug ID CSCuf66202.
network
low complexity
cisco CWE-362
critical
10.0
2014-03-06 CVE-2014-0701 Resource Management Errors vulnerability in Cisco Wireless LAN Controller Software
Cisco Wireless LAN Controller (WLC) devices 7.0 before 7.0.250.0, 7.2, 7.3, and 7.4 before 7.4.110.0 do not properly deallocate memory, which allows remote attackers to cause a denial of service (reboot) by sending WebAuth login requests at a high rate, aka Bug ID CSCuf52361.
network
low complexity
cisco CWE-399
7.8
2013-11-22 CVE-2013-6699 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Cisco Wireless LAN Controller
The Control and Provisioning of Wireless Access Points (CAPWAP) protocol implementation on Cisco Wireless LAN Controller (WLC) devices allows remote attackers to cause a denial of service via a crafted CAPWAP packet that triggers a buffer over-read, aka Bug ID CSCuh81880.
network
low complexity
cisco CWE-119
5.0
2013-11-22 CVE-2013-6698 Permissions, Privileges, and Access Controls vulnerability in Cisco Wireless LAN Controller
The web interface on Cisco Wireless LAN Controller (WLC) devices does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, related to a "cross-frame scripting (XFS)" issue, aka Bug ID CSCuf77821.
network
cisco CWE-264
4.3
2013-11-13 CVE-2013-6684 Improper Input Validation vulnerability in Cisco Wireless LAN Controller
The web framework on Cisco Wireless LAN Controller (WLC) devices does not properly validate configuration parameters, which allows remote authenticated users to cause a denial of service via a crafted HTTP request, aka Bug ID CSCuh81011.
network
low complexity
cisco CWE-20
6.8
2013-10-03 CVE-2013-5519 Cross-Site Scripting vulnerability in Cisco Wireless LAN Controller
Cross-site scripting (XSS) vulnerability in the management interface on Cisco Wireless LAN Controller (WLC) devices allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuf77810.
network
cisco CWE-79
4.3
2013-08-30 CVE-2013-3474 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Cisco Wireless LAN Controller
The Web Administrator Interface on Cisco Wireless LAN Controller (WLC) devices allows remote authenticated users to cause a denial of service (device crash) by leveraging membership in the Full Manager managers group, Read Only managers group, or Lobby Ambassador managers group, and sending a request that (1) lacks a parameter value or (2) contains a malformed parameter value, aka Bug IDs CSCuh14313, CSCuh14159, CSCuh14368, and CSCuh14436.
network
cisco CWE-119
6.3