SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2007-2041

Cisco Wireless LAN Controller (WLC) before 4.0.206.0 saves the WLAN ACL configuration with an invalid checksum, which prevents WLAN ACLs from being loaded at boot time, and might allow remote attackers to bypass intended access restrictions, aka Bug ID…

MEDIUM 4.0EPSS 1.28%

Does this matter?

Lower severity and a low EPSS score (1.28%). Track it; it rarely justifies an emergency change on its own.

Description

Cisco Wireless LAN Controller (WLC) before 4.0.206.0 saves the WLAN ACL configuration with an invalid checksum, which prevents WLAN ACLs from being loaded at boot time, and might allow remote attackers to bypass intended access restrictions, aka Bug ID CSCse58195.

CVSS 2.0
4.0 MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:N
EPSS
1.28% probability · 68th percentile
CISA KEV
Not listed
Affected
cisco/2100 wireless lan controller · cisco/4400 wireless lan controller
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.