PT-2020-4438 · Cisco · Cisco Aironet Access Points

Published

2020-09-24

·

Updated

2021-04-16

·

CVE-2020-3560

CVSS v3.1

8.6

High

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Cisco Aironet Access Points (affected versions not specified)
Description: A vulnerability could allow an unauthenticated, remote attacker to cause a denial of service (DoS) on an affected device. The issue is due to improper resource management while processing specific packets. An attacker could exploit this by sending crafted UDP packets to a specific port, potentially tearing down the connection between the AP and the wireless LAN controller or causing the device to reload. The affected device should automatically recover its normal functions without manual intervention after the attack.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-04978
CVE-2020-3560

Affected Products

Cisco Aironet Access Points