CVE-2022-20728
- EPSS 0.03%
- Published 30.09.2022 19:15:10
- Last modified 21.11.2024 06:43:25
A vulnerability in the client forwarding code of multiple Cisco Access Points (APs) could allow an unauthenticated, adjacent attacker to inject packets from the native VLAN to clients within nonnative VLANs on an affected device. This vulnerability i...
CVE-2021-1419
- EPSS 0.04%
- Published 23.09.2021 03:15:07
- Last modified 21.11.2024 05:44:19
A vulnerability in the SSH management feature of multiple Cisco Access Points (APs) platforms could allow a local, authenticated user to modify files on the affected device and possibly gain escalated privileges. The vulnerability is due to improper ...
CVE-2020-24587
- EPSS 0.3%
- Published 11.05.2021 20:15:08
- Last modified 21.11.2024 05:15:05
The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that all fragments of a frame are encrypted under the same key. An adversary can abuse this to decrypt selected fragmen...
CVE-2020-26139
- EPSS 0.41%
- Published 11.05.2021 20:15:08
- Last modified 21.11.2024 05:19:20
An issue was discovered in the kernel in NetBSD 7.1. An Access Point (AP) forwards EAPOL frames to other clients even though the sender has not yet successfully authenticated to the AP. This might be abused in projected Wi-Fi networks to launch denia...
CVE-2020-26140
- EPSS 0.43%
- Published 11.05.2021 20:15:08
- Last modified 21.11.2024 05:19:20
An issue was discovered in the ALFA Windows 10 driver 6.1316.1209 for AWUS036H. The WEP, WPA, WPA2, and WPA3 implementations accept plaintext frames in a protected Wi-Fi network. An adversary can abuse this to inject arbitrary data frames independent...
CVE-2020-3261
- EPSS 0.29%
- Published 15.04.2020 21:15:36
- Last modified 21.11.2024 05:30:40
A vulnerability in the web-based management interface of Cisco Mobility Express Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insuffic...