CVE-2023-20112

A vulnerability in Cisco access point (AP) software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient validation of certain parameters within 802.11 frames. An attacker could exploit this vulnerability by sending a wireless 802.11 association request frame with crafted parameters to an affected device. A successful exploit could allow the attacker to cause an unexpected reload of an affected device, resulting in a DoS condition.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.4 HIGH
ADJACENT_NETWORK
LOW
NONE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
ciscoCNA
7.4 HIGH
ADJACENT_NETWORK
LOW
NONE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 15%
VendorProductVersion
ciscobusiness_150ax_firmware
𝑥
< 10.3.2.0
ciscobusiness_151axm_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9105ax_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9105axi_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9105axw_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9105i_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9105w_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9115_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9115ax_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9115axe_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9115axi_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9117_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9117ax_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9117axi_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9120_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9120ax_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9120axe_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9120axi_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9120axp_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9124_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9124ax_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9124axd_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9124axi_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9130_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9130ax_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9130axe_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9130axi_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9136_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9162_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9164_firmware
𝑥
< 10.3.2.0
ciscocatalyst_9166_firmware
𝑥
< 10.3.2.0
𝑥
= Vulnerable software versions