CRITICAL✓ PATCH🇵🇱 Wersja polska

CVE-2016-1363

CVSS 9.8v3.1pub. 2016-04-21upd. 2026-05-06

Buffer overflow in the redirection functionality in Cisco Wireless LAN Controller (WLC) Software 7.2 through 7.4 before 7.4.140.0(MD) and 7.5 through 8.0 before 8.0.115.0(ED) allows remote attackers to execute arbitrary code via a crafted HTTP request, aka Bug ID CSCus25617.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
  • Cisco Wireless Lan Controller Software

    OS
    Cisco
    7.2.0 – 7.4.140.0 (excl.)7.5.0 – 8.0.115.0 (excl.)
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Tags
RCEMemory
CWE
References

Related vulnerabilities

CVE-2015-6314CRITICAL9.8PL ✓same product

Cisco WLC — nieautoryzowana zmiana konfiguracji (Auth Bypass)

CVE-2024-20271HIGH8.6same product

A vulnerability in the IP packet processing of Cisco Access Point (AP) Software could allow an unauthenticated...

CVE-2022-20769HIGH7.4same product

A vulnerability in the authentication functionality of Cisco Wireless LAN Controller (WLC) AireOS Software cou...

CVE-2021-1419HIGH7.8same product

A vulnerability in the SSH management feature of multiple Cisco Access Points (APs) platforms could allow a lo...

CVE-2021-1437HIGH7.5same product

A vulnerability in the FlexConnect Upgrade feature of Cisco Aironet Series Access Points Software could allow ...