VYPR

IOS on Aironet access points

by Cisco Systems, Inc.

CVEs (7)

  • CVE-2019-15260CriOct 16, 2019
    risk 0.64cvss 9.8epss 0.03

    A vulnerability in Cisco Aironet Access Points (APs) Software could allow an unauthenticated, remote attacker to gain unauthorized access to a targeted device with elevated privileges. The vulnerability is due to insufficient access control for certain URLs on an affected…

  • CVE-2020-3560HigSep 24, 2020
    risk 0.56cvss 8.6epss 0.01

    A vulnerability in Cisco Aironet Access Points (APs) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) on an affected device. The vulnerability is due to improper resource management while processing specific packets. An attacker could exploit…

  • CVE-2019-15261HigOct 16, 2019
    risk 0.56cvss 8.6epss 0.01

    A vulnerability in the Point-to-Point Tunneling Protocol (PPTP) VPN packet processing functionality in Cisco Aironet Access Points (APs) could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. The…

  • CVE-2019-15265MedOct 16, 2019
    risk 0.42cvss 6.5epss 0.00

    A vulnerability in the bridge protocol data unit (BPDU) forwarding functionality of Cisco Aironet Access Points (APs) could allow an unauthenticated, adjacent attacker to cause an AP port to go into an error disabled state. The vulnerability occurs because BPDUs received from…

  • CVE-2021-1423MedMar 24, 2021
    risk 0.29cvss 4.4epss 0.00

    A vulnerability in the implementation of a CLI command in Cisco Aironet Access Points (AP) could allow an authenticated, local attacker to overwrite files in the flash memory of the device. This vulnerability is due to insufficient input validation for a specific command. An…

  • CVE-2019-1835MedApr 18, 2019
    risk 0.29cvss 4.4epss 0.01

    A vulnerability in the CLI of Cisco Aironet Access Points (APs) could allow an authenticated, local attacker to access sensitive information stored in an AP. The vulnerability is due to improper sanitization of user-supplied input in specific CLI commands. An attacker could…

  • CVE-2017-12279MedNov 2, 2017
    risk 0.28cvss 4.3epss 0.01

    A vulnerability in the packet processing code of Cisco IOS Software for Cisco Aironet Access Points could allow an unauthenticated, adjacent attacker to retrieve content from memory on an affected device, which could lead to the disclosure of confidential information. The…