PT-2024-18652 · Cisco · Cisco Aironet Access Point

Published

2024-03-27

·

Updated

2025-08-13

·

CVE-2024-20354

CVSS v3.1

7.4

High

VectorAV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Cisco Aironet Access Point (AP) Software (affected versions not specified)
Description A vulnerability in the handling of encrypted wireless frames could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on the affected device. This issue is due to incomplete cleanup of resources when dropping certain malformed frames. An attacker could exploit this by connecting as a wireless client to an affected AP and sending specific malformed frames over the wireless connection, potentially leading to degradation of service to other clients and a complete DoS condition.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Improper Handling of Exceptional Conditions

Weakness Enumeration

Related Identifiers

BDU:2025-04594
CVE-2024-20354

Affected Products

Cisco Aironet Access Point