Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m53c-9wh4-q9hq

Опубликовано: 25 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 8.6

Описание

A vulnerability in the processing of Control and Provisioning of Wireless Access Points (CAPWAP) packets of Cisco IOS XE Wireless Controller Software for the Catalyst CW9800 Family could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.

This vulnerability is due to improper handling of a malformed CAPWAP packet. An attacker could exploit this vulnerability by sending a malformed CAPWAP packet to an affected device. A successful exploit could allow the attacker to cause the affected device to reload unexpectedly, resulting in a DoS condition.

A vulnerability in the processing of Control and Provisioning of Wireless Access Points (CAPWAP) packets of Cisco IOS XE Wireless Controller Software for the Catalyst CW9800 Family could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.

This vulnerability is due to improper handling of a malformed CAPWAP packet. An attacker could exploit this vulnerability by sending a malformed CAPWAP packet to an affected device. A successful exploit could allow the attacker to cause the affected device to reload unexpectedly, resulting in a DoS condition.

EPSS

Процентиль: 27%
0.00354
Низкий

8.6 High

CVSS3

Дефекты

CWE-230

Связанные уязвимости

CVSS3: 8.6
nvd
5 месяцев назад

A vulnerability in the processing of Control and Provisioning of Wireless Access Points (CAPWAP) packets of Cisco IOS XE Wireless Controller Software for the Catalyst CW9800 Family could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of a malformed CAPWAP packet. An attacker could exploit this vulnerability by sending a malformed CAPWAP packet to an affected device. A successful exploit could allow the attacker to cause the affected device to reload unexpectedly, resulting in a DoS condition.

CVSS3: 8.6
fstec
5 месяцев назад

Уязвимость операционных систем Cisco IOS XE сетевого устройства Catalyst 9800, связанная с некорректной обработкой пропущенных значений, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 27%
0.00354
Низкий

8.6 High

CVSS3

Дефекты

CWE-230