6.8
CVSSv2

CVE-2010-2841

Published: 10/09/2010 Updated: 13/09/2010
CVSS v2 Base Score: 6.8 | Impact Score: 6.9 | Exploitability Score: 8
VMScore: 605
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C

Vulnerability Summary

Unspecified vulnerability in Cisco Wireless LAN Controller (WLC) software 4.2 prior to 4.2.209.0; 4.2M prior to 4.2.207.54M; 5.0, 5.1, and 6.0 prior to 6.0.196.0; and 5.2 prior to 5.2.193.11 allows remote authenticated users to cause a denial of service (device reload) via crafted HTTP packets that trigger invalid arguments to the emweb component, aka Bug ID CSCtd16938.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco wireless lan controller software 4.2.174.0

cisco wireless lan controller software 4.2.173.0

cisco wireless lan controller software 4.2.130.0

cisco wireless lan controller software 4.2.99.0

cisco wireless lan controller software 4.0.217.0

cisco wireless lan controller software 5.0.148.0

cisco wireless lan controller software 5.0.148.2

cisco wireless lan controller software 5.1

cisco wireless lan controller software 5.1.151.0

cisco wireless lan controller software 4.2.112.0

cisco wireless lan controller software 4.2

cisco wireless lan controller software 4.2m

cisco wireless lan controller software 4.0.155.5

cisco wireless lan controller software 4.0.219.0

cisco wireless lan controller software 5.1.152.0

cisco wireless lan controller software 6.0

cisco wireless lan controller software 4.0.108

cisco wireless lan controller software 4.0.155.0

cisco wireless lan controller software 4.0.179.8

cisco wireless lan controller software 4.0.196

cisco wireless lan controller software 4.2.117.0

cisco wireless lan controller software 4.2.176.0

cisco wireless lan controller software 4.2.61.0

cisco wireless lan controller software 4.2.182.0

cisco wireless lan controller software 4.0.179.11

cisco wireless lan controller software 4.0.206.0

cisco wireless lan controller software 5.1.160.0

cisco wireless lan controller software 6.0.182.0

Vendor Advisories

The Cisco Wireless LAN Controller (WLC) product family is affected by these vulnerabilities: Two denial of service (DoS) vulnerabilities Three privilege escalation vulnerabilities Two access control list (ACL) bypass vulnerabilities Note: These vulnerabilities are independent of one another A device may be a ...