Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2016-9194


A vulnerability in 802.11 Wireless Multimedia Extensions (WME) action frame processing in Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition. The vulnerability is due to incomplete input validation of the 802.11 WME packet header. An attacker could exploit this vulnerability by sending malformed 802.11 WME frames to a targeted device. A successful exploit could allow the attacker to cause the WLC to reload unexpectedly. The fixed versions are 8.0.140.0, 8.2.130.0, and 8.3.111.0. Cisco Bug IDs: CSCva86353.


Published

2017-04-06T18:59:00.230

Last Modified

2025-04-20T01:37:25.860

Status

Deferred

Source

[email protected]

Severity

CVSSv3.0: 6.5 (MEDIUM)

CVSSv2 Vector

AV:A/AC:L/Au:N/C:N/I:N/A:C

  • Access Vector: ADJACENT_NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: COMPLETE
Exploitability Score

6.5

Impact Score

6.9

Weaknesses
  • Type: Secondary
    CWE-399
  • Type: Primary
    CWE-399

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application cisco wireless_lan_controller 5.2.157.0 Yes
Application cisco wireless_lan_controller 5.2.169.0 Yes
Application cisco wireless_lan_controller 6.0_base Yes
Application cisco wireless_lan_controller 7.0_base Yes
Application cisco wireless_lan_controller 7.1_base Yes
Application cisco wireless_lan_controller 7.2_base Yes
Application cisco wireless_lan_controller 7.3.101.0 Yes
Application cisco wireless_lan_controller 7.3.103.8 Yes
Application cisco wireless_lan_controller 7.3.112 Yes
Application cisco wireless_lan_controller 7.3_base Yes
Application cisco wireless_lan_controller 7.4.1.1 Yes
Application cisco wireless_lan_controller 7.4.100 Yes
Application cisco wireless_lan_controller 7.4.100.60 Yes
Application cisco wireless_lan_controller 7.4.110.0 Yes
Application cisco wireless_lan_controller 7.4.121.0 Yes
Application cisco wireless_lan_controller 7.4_base Yes
Application cisco wireless_lan_controller 7.5.102.0 Yes
Application cisco wireless_lan_controller 7.5.102.11 Yes
Application cisco wireless_lan_controller 7.5_base Yes
Application cisco wireless_lan_controller 7.6.1.62 Yes
Application cisco wireless_lan_controller 7.6.100.0 Yes
Application cisco wireless_lan_controller 7.6.110.0 Yes
Application cisco wireless_lan_controller 7.6.120.0 Yes
Application cisco wireless_lan_controller 7.6.130.0 Yes
Application cisco wireless_lan_controller 8.0.0 Yes
Application cisco wireless_lan_controller 8.0.0.30220.385 Yes
Application cisco wireless_lan_controller 8.0.72.140 Yes
Application cisco wireless_lan_controller 8.0.100 Yes
Application cisco wireless_lan_controller 8.0.115.0 Yes
Application cisco wireless_lan_controller 8.0.120.0 Yes
Application cisco wireless_lan_controller 8.0.121.0 Yes
Application cisco wireless_lan_controller 8.1.0 Yes
Application cisco wireless_lan_controller 8.1.104.37 Yes
Application cisco wireless_lan_controller 8.1.111.0 Yes
Application cisco wireless_lan_controller 8.1.122.0 Yes
Application cisco wireless_lan_controller 8.1.130.0 Yes
Application cisco wireless_lan_controller_6.0 182.0 Yes
Application cisco wireless_lan_controller_6.0 188.0 Yes
Application cisco wireless_lan_controller_6.0 196.0 Yes
Application cisco wireless_lan_controller_6.0 199.4 Yes
Application cisco wireless_lan_controller_6.0 202.0 Yes
Application cisco wireless_lan_controller_7.0 98.0 Yes
Application cisco wireless_lan_controller_7.0 98.218 Yes
Application cisco wireless_lan_controller_7.0 116.0 Yes
Application cisco wireless_lan_controller_7.0 220.0 Yes
Application cisco wireless_lan_controller_7.0 240.0 Yes
Application cisco wireless_lan_controller_7.0 250.0 Yes
Application cisco wireless_lan_controller_7.0 252.0 Yes
Application cisco wireless_lan_controller_7.1 91.0 Yes
Application cisco wireless_lan_controller_7.2 103.0 Yes
Application cisco wireless_lan_controller_7.4 1.19 Yes
Application cisco wireless_lan_controller_7.4 1.54 Yes
Application cisco wireless_lan_controller_7.4 140.0 Yes

References