CVE-2016-1363

EUVD-2016-2462
Buffer overflow in the redirection functionality in Cisco Wireless LAN Controller (WLC) Software 7.2 through 7.4 before 7.4.140.0(MD) and 7.5 through 8.0 before 8.0.115.0(ED) allows remote attackers to execute arbitrary code via a crafted HTTP request, aka Bug ID CSCus25617.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 93%
Affected Products (NVD)
VendorProductVersion
ciscowireless_lan_controller_software
7.2.0 ≤
𝑥
< 7.4.140.0
ciscowireless_lan_controller_software
7.5.0 ≤
𝑥
< 8.0.115.0
𝑥
= Vulnerable software versions
Common Weakness Enumeration