6.8
CVE-2015-0726
- EPSS 2.77%
- Veröffentlicht 16.05.2015 14:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
The web administration interface on Cisco Wireless LAN Controller (WLC) devices before 7.0.241, 7.1.x through 7.4.x before 7.4.122, and 7.5.x and 7.6.x before 7.6.120 allows remote authenticated users to cause a denial of service (device crash) via unspecified parameters, aka Bug IDs CSCum65159 and CSCum65252.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Wireless Lan Controller Software Version 7.0.98.0
Cisco ≫ Wireless Lan Controller Software Version 7.0.98.218
Cisco ≫ Wireless Lan Controller Software Version 7.0.116.0
Cisco ≫ Wireless Lan Controller Software Version 7.0.220.0
Cisco ≫ Wireless Lan Controller Software Version 7.0_base
Cisco ≫ Wireless Lan Controller Software Version 7.4.1.54
Cisco ≫ Wireless Lan Controller Software Version 7.4.100
Cisco ≫ Wireless Lan Controller Software Version 7.4.100.60
Cisco ≫ Wireless Lan Controller Software Version 7.4.110.0
Cisco ≫ Wireless Lan Controller Software Version 7.4.121.0
Cisco ≫ Wireless Lan Controller Software Version 7.4_base
Cisco ≫ Wireless Lan Controller Software Version 7.6.100.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.77% | 0.844 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 6.8 | 8 | 6.9 |
AV:N/AC:L/Au:S/C:N/I:N/A:C
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
http://tools.cisco.com/security/center/viewAlert.x?alertId=38789
http://www.securityfocus.com/bid/74641
http://www.securitytracker.com/id/1032327