Lucene search

K
ciscoCiscoCISCO-SA-20170927-IOS-XE
HistorySep 27, 2017 - 4:00 p.m.

Cisco IOS XE Wireless Controller Manager Denial of Service Vulnerability

2017-09-2716:00:00
tools.cisco.com
15

EPSS

0.001

Percentile

42.0%

A vulnerability in the wireless controller manager of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a restart of the switch and result in a denial of service (DoS) condition.

The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by submitting a crafted association request. An exploit could allow the attacker to cause the switch to restart.

Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.

This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-ios-xe [“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-ios-xe”]

Affected configurations

Vulners
Node
ciscocisco_ios_xe_softwareMatchany
OR
ciscocisco_ios_xe_softwareMatchany
VendorProductVersionCPE
ciscocisco_ios_xe_softwareanycpe:2.3:a:cisco:cisco_ios_xe_software:any:*:*:*:*:*:*:*

EPSS

0.001

Percentile

42.0%

Related for CISCO-SA-20170927-IOS-XE