CVE-2019-1826
Cisco Aironet Series Access Points Quality of Service Denial of Service Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability in the quality of service (QoS) feature of Cisco Aironet Series Access Points (APs) could allow an authenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation on QoS fields within Wi-Fi frames by the affected device. An attacker could exploit this vulnerability by sending malformed Wi-Fi frames to an affected device. A successful exploit could allow the attacker to cause the affected device to crash, resulting in a DoS condition.
Una vulnerabilidad en la característica quality of service (QoS) de Aironet Access Points (APs) de Cisco, podría permitir a un atacante identificado localmente generar una condición de denegación de servicio (DoS) en un dispositivo afectado. La vulnerabilidad se debe a la comprobación de entrada incorrecta en los campos de QoS dentro de las tramas Wi-Fi por el dispositivo afectado. Un atacante podría aprovechar esta vulnerabilidad enviando tramas Wi-Fi malformadas a un dispositivo afectado. Una operación con éxito podría permitir que el atacante hiciera que el dispositivo afectado se bloqueara, resultando en una condición de DoS.
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2018-12-06 CVE Reserved
- 2019-04-18 CVE Published
- 2023-03-08 EPSS Updated
- 2024-11-21 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-20: Improper Input Validation
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/107988 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190417-aap-dos | 2019-10-09 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Aironet Access Point Firmware Search vendor "Cisco" for product "Aironet Access Point Firmware" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Aironet 1562d Search vendor "Cisco" for product "Aironet 1562d" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Aironet Access Point Firmware Search vendor "Cisco" for product "Aironet Access Point Firmware" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Aironet 1562e Search vendor "Cisco" for product "Aironet 1562e" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Aironet Access Point Firmware Search vendor "Cisco" for product "Aironet Access Point Firmware" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Aironet 1562i Search vendor "Cisco" for product "Aironet 1562i" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Aironet Access Point Firmware Search vendor "Cisco" for product "Aironet Access Point Firmware" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Aironet 2800e Search vendor "Cisco" for product "Aironet 2800e" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Aironet Access Point Firmware Search vendor "Cisco" for product "Aironet Access Point Firmware" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Aironet 2800i Search vendor "Cisco" for product "Aironet 2800i" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Aironet Access Point Firmware Search vendor "Cisco" for product "Aironet Access Point Firmware" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Aironet 3800e Search vendor "Cisco" for product "Aironet 3800e" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Aironet Access Point Firmware Search vendor "Cisco" for product "Aironet Access Point Firmware" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Aironet 3800i Search vendor "Cisco" for product "Aironet 3800i" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Aironet Access Point Firmware Search vendor "Cisco" for product "Aironet Access Point Firmware" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Aironet 3800p Search vendor "Cisco" for product "Aironet 3800p" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Aironet Access Point Firmware Search vendor "Cisco" for product "Aironet Access Point Firmware" | - | - |
Affected
| in | Cisco Search vendor "Cisco" | Aironet 4800 Search vendor "Cisco" for product "Aironet 4800" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Aironet Access Point Firmware Search vendor "Cisco" for product "Aironet Access Point Firmware" | 8.5\(131.3\) Search vendor "Cisco" for product "Aironet Access Point Firmware" and version "8.5\(131.3\)" | - |
Affected
| in | Cisco Search vendor "Cisco" | Aironet 1850e Search vendor "Cisco" for product "Aironet 1850e" | - | - |
Safe
|
Cisco Search vendor "Cisco" | Aironet Access Point Firmware Search vendor "Cisco" for product "Aironet Access Point Firmware" | 8.5\(131.3\) Search vendor "Cisco" for product "Aironet Access Point Firmware" and version "8.5\(131.3\)" | - |
Affected
| in | Cisco Search vendor "Cisco" | Aironet 1850i Search vendor "Cisco" for product "Aironet 1850i" | - | - |
Safe
|