9
CVSSv2

CVE-2013-1104

Published: 24/01/2013 Updated: 29/08/2017
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

The HTTP Profiling functionality on Cisco Wireless LAN Controller (WLC) devices with software 7.3.101.0 allows remote authenticated users to execute arbitrary code via a crafted HTTP User-Agent header, aka Bug ID CSCuc15636.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco 2500_wireless_lan_controller -

cisco 4100_wireless_lan_controller

cisco 2000_wireless_lan_controller

cisco 2100_wireless_lan_controller

cisco 7500_wireless_lan_controller -

cisco 8500_wireless_lan_controller -

cisco 4400_wireless_lan_controller

cisco 5500_wireless_lan_controller -

cisco wireless_lan_controller_software 7.3.101.0

Vendor Advisories

The Cisco Wireless LAN Controller (Cisco WLC) product family is affected by the following four vulnerabilities: Cisco Wireless LAN Controllers Wireless Intrusion Prevention System (wIPS) Denial of Service Vulnerability Cisco Wireless LAN Controllers Session Initiation Protocol Denial of Service Vulnerability ...