// For flags

CVE-2020-3552

Cisco Aironet Access Points Ethernet Wired Clients Denial of Service Vulnerability

Severity Score

7.4
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

Track
*SSVC
Descriptions

A vulnerability in the Ethernet packet handling of Cisco Aironet Access Points (APs) Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by connecting as a wired client to the Ethernet interface of an affected device and sending a series of specific packets within a short time frame. A successful exploit could allow the attacker to cause a NULL pointer access that results in a reload of the affected device.

Una vulnerabilidad en el manejo de paquetes Ethernet de Cisco Aironet Access Points (APs) Software, podría permitir a un atacante adyacente no autenticado causar una condición de denegación de servicio (DoS) en un dispositivo afectado. La vulnerabilidad es debido a una comprobación insuficiente de la entrada. Un atacante podría explotar esta vulnerabilidad mediante la conexión como un cliente cableado a la interfaz Ethernet de un dispositivo afectado y mediante el envío de una serie de paquetes específicos en un corto período de tiempo. Una explotación con éxito podría permitir al atacante causar un acceso al puntero NULL que resulte en una recarga del dispositivo afectado.

*Credits: N/A
CVSS Scores
Attack Vector
Adjacent
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Changed
Confidentiality
None
Integrity
None
Availability
High
Attack Vector
Adjacent
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:Track
Exploitation
None
Automatable
No
Tech. Impact
Partial
* Organization's Worst-case Scenario
Timeline
  • 2019-12-12 CVE Reserved
  • 2020-09-24 CVE Published
  • 2023-06-10 EPSS Updated
  • 2024-11-13 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-476: NULL Pointer Dereference
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1542d
Search vendor "Cisco" for product "Aironet 1542d"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1542i
Search vendor "Cisco" for product "Aironet 1542i"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1562d
Search vendor "Cisco" for product "Aironet 1562d"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1562e
Search vendor "Cisco" for product "Aironet 1562e"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1562i
Search vendor "Cisco" for product "Aironet 1562i"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1810
Search vendor "Cisco" for product "Aironet 1810"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1815
Search vendor "Cisco" for product "Aironet 1815"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1830e
Search vendor "Cisco" for product "Aironet 1830e"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1830i
Search vendor "Cisco" for product "Aironet 1830i"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1840
Search vendor "Cisco" for product "Aironet 1840"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1850e
Search vendor "Cisco" for product "Aironet 1850e"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1850i
Search vendor "Cisco" for product "Aironet 1850i"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 2800e
Search vendor "Cisco" for product "Aironet 2800e"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 2800i
Search vendor "Cisco" for product "Aironet 2800i"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 3800e
Search vendor "Cisco" for product "Aironet 3800e"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 3800i
Search vendor "Cisco" for product "Aironet 3800i"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 3800p
Search vendor "Cisco" for product "Aironet 3800p"
--
Safe
Cisco
Search vendor "Cisco"
Wireless Lan Controller
Search vendor "Cisco" for product "Wireless Lan Controller"
>= 8.6 < 8.10.105.0
Search vendor "Cisco" for product "Wireless Lan Controller" and version " >= 8.6 < 8.10.105.0"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 4800
Search vendor "Cisco" for product "Aironet 4800"
--
Safe
Cisco
Search vendor "Cisco"
Access Points
Search vendor "Cisco" for product "Access Points"
< 16.12.4a
Search vendor "Cisco" for product "Access Points" and version " < 16.12.4a"
-
Affected
in Cisco
Search vendor "Cisco"
Catalyst 9800-40
Search vendor "Cisco" for product "Catalyst 9800-40"
--
Safe
Cisco
Search vendor "Cisco"
Access Points
Search vendor "Cisco" for product "Access Points"
< 16.12.4a
Search vendor "Cisco" for product "Access Points" and version " < 16.12.4a"
-
Affected
in Cisco
Search vendor "Cisco"
Catalyst 9800-80
Search vendor "Cisco" for product "Catalyst 9800-80"
--
Safe
Cisco
Search vendor "Cisco"
Access Points
Search vendor "Cisco" for product "Access Points"
< 16.12.4a
Search vendor "Cisco" for product "Access Points" and version " < 16.12.4a"
-
Affected
in Cisco
Search vendor "Cisco"
Catalyst 9800-cl
Search vendor "Cisco" for product "Catalyst 9800-cl"
--
Safe
Cisco
Search vendor "Cisco"
Access Points
Search vendor "Cisco" for product "Access Points"
< 16.12.4a
Search vendor "Cisco" for product "Access Points" and version " < 16.12.4a"
-
Affected
in Cisco
Search vendor "Cisco"
Catalyst 9800-l
Search vendor "Cisco" for product "Catalyst 9800-l"
--
Safe
Cisco
Search vendor "Cisco"
Access Points
Search vendor "Cisco" for product "Access Points"
< 16.12.4a
Search vendor "Cisco" for product "Access Points" and version " < 16.12.4a"
-
Affected
in Cisco
Search vendor "Cisco"
Catalyst 9800-l-c
Search vendor "Cisco" for product "Catalyst 9800-l-c"
--
Safe
Cisco
Search vendor "Cisco"
Access Points
Search vendor "Cisco" for product "Access Points"
< 16.12.4a
Search vendor "Cisco" for product "Access Points" and version " < 16.12.4a"
-
Affected
in Cisco
Search vendor "Cisco"
Catalyst 9800-l-f
Search vendor "Cisco" for product "Catalyst 9800-l-f"
--
Safe
Cisco
Search vendor "Cisco"
Aironet Access Point Software
Search vendor "Cisco" for product "Aironet Access Point Software"
8.10\(1.255\)
Search vendor "Cisco" for product "Aironet Access Point Software" and version "8.10\(1.255\)"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1850e
Search vendor "Cisco" for product "Aironet 1850e"
--
Safe
Cisco
Search vendor "Cisco"
Aironet Access Point Software
Search vendor "Cisco" for product "Aironet Access Point Software"
8.10\(1.255\)
Search vendor "Cisco" for product "Aironet Access Point Software" and version "8.10\(1.255\)"
-
Affected
in Cisco
Search vendor "Cisco"
Aironet 1850i
Search vendor "Cisco" for product "Aironet 1850i"
--
Safe
Cisco
Search vendor "Cisco"
Business Access Points
Search vendor "Cisco" for product "Business Access Points"
>= 10.0 < 10.1.1.0
Search vendor "Cisco" for product "Business Access Points" and version " >= 10.0 < 10.1.1.0"
-
Affected