Cisco Aironet Access Point Software 8.10(1.255)

CPE Details

Cisco Aironet Access Point Software 8.10(1.255)
8.10\(1.255\)
2021-01-14
18h33 +00:00
2021-01-14
18h33 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:cisco:aironet_access_point_software:8.10\(1.255\):*:*:*:*:*:*:*

Informations

Vendor

cisco

Product

aironet_access_point_software

Version

8.10\(1.255\)

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-20056 2023-03-22 23h00 +00:00 A vulnerability in the management CLI of Cisco access point (AP) software could allow an authenticated, local attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient input validation of commands supplied by the user. An attacker could exploit this vulnerability by authenticating to a device and submitting crafted input to the affected command. A successful exploit could allow the attacker to cause an affected device to reload spontaneously, resulting in a DoS condition.
6.5
Medium
CVE-2023-20097 2023-03-22 23h00 +00:00 A vulnerability in Cisco access points (AP) software could allow an authenticated, local attacker to inject arbitrary commands and execute them with root privileges. This vulnerability is due to improper input validation of commands that are issued from a wireless controller to an AP. An attacker with Administrator access to the CLI of the controller could exploit this vulnerability by issuing a command with crafted arguments. A successful exploit could allow the attacker to gain full root access on the AP.
6.7
Medium
CVE-2020-3552 2020-09-24 17h51 +00:00 A vulnerability in the Ethernet packet handling of Cisco Aironet Access Points (APs) Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by connecting as a wired client to the Ethernet interface of an affected device and sending a series of specific packets within a short time frame. A successful exploit could allow the attacker to cause a NULL pointer access that results in a reload of the affected device.
7.4
High