CVE-2007-2038
The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.193.5, 4.0.x before 4.0.206.0, and 4.1.x allows remote attackers on a local wireless network to cause a denial of service (loss of packet forwarding) via (1) crafted…
Does this matter?
Lower severity and a low EPSS score (0.98%). Track it; it rarely justifies an emergency change on its own.
Description
The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.193.5, 4.0.x before 4.0.206.0, and 4.1.x allows remote attackers on a local wireless network to cause a denial of service (loss of packet forwarding) via (1) crafted SNAP packets, (2) malformed 802.11 traffic, or (3) packets with certain header length values, aka Bug ID CSCsg36361.
- CVSS 2.0
- 6.1 MEDIUMAV:A/AC:L/Au:N/C:N/I:N/A:C
- EPSS
- 0.98% probability · 60th percentile
- CISA KEV
- Not listed
- Affected
- cisco/2000 wireless lan controller · cisco/2100 wireless lan controller · cisco/4100 wireless lan controller · cisco/4400 wireless lan controller
- Source
- cve@mitre.org
References
- http://securitytracker.com/id?1017908
- http://www.cisco.com/warp/public/707/cisco-sa-20070412-wlc.shtmlVendor Advisory
- http://www.osvdb.org/34136
- http://www.securityfocus.com/bid/23461
- http://www.vupen.com/english/advisories/2007/1368
- https://exchange.xforce.ibmcloud.com/vulnerabilities/33609
- http://securitytracker.com/id?1017908
- http://www.cisco.com/warp/public/707/cisco-sa-20070412-wlc.shtmlVendor Advisory
- http://www.osvdb.org/34136
- http://www.securityfocus.com/bid/23461
- http://www.vupen.com/english/advisories/2007/1368
- https://exchange.xforce.ibmcloud.com/vulnerabilities/33609
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.