Lucene search

K
cveMitreCVE-2007-2039
HistoryApr 16, 2007 - 9:19 p.m.

CVE-2007-2039

2007-04-1621:19:00
CWE-399
mitre
web.nvd.nist.gov
37
cisco
wlc
npu
vulnerability
dos
crafted packets
nvd
cve-2007-2039

CVSS2

6.1

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:A/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.6

Confidence

High

EPSS

0.01

Percentile

83.7%

The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.171.5, 4.0.x before 4.0.206.0, and 4.1.x allows remote attackers on a local wireless network to cause a denial of service (loss of packet forwarding) via (1) crafted SNAP packets, (2) malformed 802.11 traffic, or (3) packets with certain header length values, aka Bug IDs CSCsg15901 and CSCsh10841.

Affected configurations

Nvd
Node
ciscowireless_lan_controller_softwareRange3.23.2.171.5
OR
ciscowireless_lan_controller_softwareRange4.04.0.206.0
OR
ciscowireless_lan_controller_softwareRange4.14.1.171.0
VendorProductVersionCPE
ciscowireless_lan_controller_software*cpe:2.3:o:cisco:wireless_lan_controller_software:*:*:*:*:*:*:*:*

CVSS2

6.1

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:A/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.6

Confidence

High

EPSS

0.01

Percentile

83.7%