543
VMScore

CVE-2018-0441

Published: 17/10/2018 Updated: 09/10/2019
CVSS v2 Base Score: 6.1 | Impact Score: 6.9 | Exploitability Score: 6.5
CVSS v3 Base Score: 7.4 | Impact Score: 4 | Exploitability Score: 2.8
VMScore: 543
Vector: AV:A/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

A vulnerability in the 802.11r Fast Transition feature set of Cisco IOS Access Points (APs) Software could allow an unauthenticated, adjacent malicious user to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a corruption of certain timer mechanisms triggered by specific roaming events. This corruption will eventually cause a timer crash. An attacker could exploit this vulnerability by sending malicious reassociation events multiple times to the same AP in a short period of time, causing a DoS condition on the affected AP.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco access points 8.2\\(151.0\\)

cisco access points 8.3\\(112.0\\)

cisco access points 15.3\\(3\\)jd

cisco access points 8.0\\(140.0\\)

cisco access points 8.2\\(141.0\\)

cisco access points 8.3\\(102.0\\)

cisco access points 8.3\\(114.74\\)

cisco access points

Vendor Advisories

A vulnerability in the 80211r Fast Transition feature set of Cisco IOS Access Points (APs) Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device The vulnerability is due to a corruption of certain timer mechanisms triggered by specific roaming events This corruption will eve ...