CVE-2016-1363

CRITICAL

Cisco Wireless LAN Controller <8.0.115.0 - RCE

Title source: llm
STIX 2.1

Description

Buffer overflow in the redirection functionality in Cisco Wireless LAN Controller (WLC) Software 7.2 through 7.4 before 7.4.140.0(MD) and 7.5 through 8.0 before 8.0.115.0(ED) allows remote attackers to execute arbitrary code via a crafted HTTP request, aka Bug ID CSCus25617.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1035633

Scores

CVSS v3 9.8
EPSS 0.0558
EPSS Percentile 92.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-399
Status published
Products (1)
cisco/wireless_lan_controller_software 7.2.0 - 7.4.140.0
Published Apr 21, 2016
Tracked Since Feb 18, 2026