
CVE-2016-9219
https://notcve.org/view.php?id=CVE-2016-9219
06 Apr 2017 — A vulnerability with IPv6 UDP ingress packet processing in Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker to cause an unexpected reload of the device. The vulnerability is due to incomplete IPv6 UDP header validation. An attacker could exploit this vulnerability by sending a crafted IPv6 UDP packet to a specific port on the targeted device. An exploit could allow the attacker to impact the availability of the device as it could unexpectedly reload. This vulnerab... • http://www.securityfocus.com/bid/97423 • CWE-20: Improper Input Validation •

CVE-2017-3854
https://notcve.org/view.php?id=CVE-2017-3854
15 Mar 2017 — A vulnerability in the mesh code of Cisco Wireless LAN Controller (WLC) software could allow an unauthenticated, remote attacker to impersonate a WLC in a meshed topology. The vulnerability is due to insufficient authentication of the parent access point in a mesh configuration. An attacker could exploit this vulnerability by forcing the target system to disconnect from the correct parent access point and reconnect to a rogue access point owned by the attacker. An exploit could allow the attacker to control... • http://www.securityfocus.com/bid/96911 • CWE-287: Improper Authentication •

CVE-2016-6375
https://notcve.org/view.php?id=CVE-2016-6375
12 Sep 2016 — Cisco Wireless LAN Controller (WLC) devices before 8.0.140.0, 8.1.x and 8.2.x before 8.2.121.0, and 8.3.x before 8.3.102.0 allow remote attackers to cause a denial of service (device reload) by sending crafted Inter-Access Point Protocol (IAPP) packets and then sending a traffic stream metrics (TSM) information request over SNMP, aka Bug ID CSCuz40221. Dispositivos Cisco Wireless LAN Controller (WLC) en versiones anteriores a 8.0.140.0, 8.1.x y 8.2.x en versiones anteriores a 8.2.121.0 y 8.3.x en versiones ... • http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160831-wlc-1 • CWE-399: Resource Management Errors •

CVE-2016-1460
https://notcve.org/view.php?id=CVE-2016-1460
28 Jul 2016 — Cisco Wireless LAN Controller (WLC) devices 7.4(121.0) and 8.0(0.30220.385) allow remote attackers to cause a denial of service via crafted wireless management frames, aka Bug ID CSCun92979. Dispositivos Cisco Wireless LAN Controller (WLC) 7.4(121.0) y 8.0(0.30220.385) permiten a atacantes remotos provocar una denegación de servicio a través de marcos de gestión inalámbricos manipulados, también conocido como Bug ID CSCun92979. • http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160727-wlc • CWE-399: Resource Management Errors •

CVE-2016-1363
https://notcve.org/view.php?id=CVE-2016-1363
21 Apr 2016 — Buffer overflow in the redirection functionality in Cisco Wireless LAN Controller (WLC) Software 7.2 through 7.4 before 7.4.140.0(MD) and 7.5 through 8.0 before 8.0.115.0(ED) allows remote attackers to execute arbitrary code via a crafted HTTP request, aka Bug ID CSCus25617. Desbordamiento de buffer en la funcionalidad de redirección en Cisco Wireless LAN Controller (WLC) Software 7.2 hasta la versión 7.4 en versiones anteriores a 7.4.140.0(MD) y 7.5 hasta la versión 8.0 en versiones anteriores a 8.0.115.0(... • http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160420-htrd • CWE-399: Resource Management Errors •

CVE-2016-1364
https://notcve.org/view.php?id=CVE-2016-1364
21 Apr 2016 — Cisco Wireless LAN Controller (WLC) Software 7.4 before 7.4.130.0(MD) and 7.5, 7.6, and 8.0 before 8.0.110.0(ED) allows remote attackers to cause a denial of service (device reload) via crafted Bonjour traffic, aka Bug ID CSCur66908. Cisco Wireless LAN Controller (WLC) Software 7.4 en versiones anteriores a 7.4.130.0(MD) y 7.5, 7.6 y 8.0 en versiones anteriores a 8.0.110.0(ED) permite a atacantes remotos provocar una denegación de servicio (recarga de dispositivo) a través de tráfico Bonjour manipulado, tam... • http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160420-bdos • CWE-20: Improper Input Validation •

CVE-2015-6314
https://notcve.org/view.php?id=CVE-2015-6314
15 Jan 2016 — Cisco Wireless LAN Controller (WLC) devices with software 7.6.x, 8.0 before 8.0.121.0, and 8.1 before 8.1.131.0 allow remote attackers to change configuration settings via unspecified vectors, aka Bug ID CSCuw06153. Dispositivos Cisco Wireless LAN Controller (WLC) con software 7.6.x, 8.0 en versiones anteriores a 8.0.121.0 y 8.1 en versiones anteriores a 8.1.131.0 permiten a atacantes remotos cambiar los ajustes de configuración a través de vectores no especificados, también conocido como Bug ID CSCuw06153. • http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160113-wlc • CWE-287: Improper Authentication •

CVE-2015-6341
https://notcve.org/view.php?id=CVE-2015-6341
25 Oct 2015 — The Web Management GUI on Cisco Wireless LAN Controller (WLC) devices with software 7.4(140.0) and 8.0(120.0) allows remote attackers to cause a denial of service (client disconnection) via unspecified vectors, aka Bug ID CSCuw10610. El Web Management GUI en dispositivos Cisco Wireless LAN Controller (WLC) con software 7.4(140.0) y 8.0(120.0) permite a atacantes remotos provocar una denegación de servicio (desconexión del cliente) a través de vectores no especificados, también conocido como Bug ID CSCuw1061... • http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151016-wlc • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2015-6302
https://notcve.org/view.php?id=CVE-2015-6302
25 Sep 2015 — The RADIUS functionality on Cisco Wireless LAN Controller (WLC) devices with software 7.0(250.0) and 7.0(252.0) allows remote attackers to disconnect arbitrary sessions via crafted Disconnect-Request UDP packets, aka Bug ID CSCuw29419. Vulnerabilidad en la funcionalidad RADIUS en dispositivos Cisco Wireless LAN Controller (WLC) con software 7.0(250.0) y 7.0(252.0), permite a atacantes remotos desconectar sesiones arbitrariamente a través de paquetes UDP Disconnect-Request manipulados, también conocida como ... • http://tools.cisco.com/security/center/viewAlert.x?alertId=41102 • CWE-399: Resource Management Errors •

CVE-2015-6258
https://notcve.org/view.php?id=CVE-2015-6258
22 Aug 2015 — The Internet Access Point Protocol (IAPP) module on Cisco Wireless LAN Controller (WLC) devices with software 8.1(104.37) allows remote attackers to trigger incorrect traffic forwarding via crafted IPv6 packets, aka Bug ID CSCuv40033. Vulnerabilidad en el módulo de Internet Access Point Protocol (IAPP) de los dispositivos Cisco Wireless LAN Controller (WLC) con software 8.1 (104.37) permite a atacantes remotos desencadenar reenvíos incorrectos de tráfico a través de paquetes IPv6 manipulados, también conoci... • http://tools.cisco.com/security/center/viewAlert.x?alertId=40586 • CWE-20: Improper Input Validation •