Networking-Forums.com

Professional Discussions => Vendor Advisories => Topic started by: Netwörkheäd on March 23, 2023, 06:06:18 AM

Title: Cisco Security Advisory - Cisco Access Point Software Denial of Service Vulnerability
Post by: Netwörkheäd on March 23, 2023, 06:06:18 AM
Cisco Access Point Software Denial of Service Vulnerability

A vulnerability in the management CLI of Cisco access point (AP) software could allow an authenticated, local attacker to cause a denial of service (DoS) condition on an affected device.


This vulnerability is due to insufficient input validation of commands supplied by the user. An attacker could exploit this vulnerability by authenticating to a device and submitting crafted input to the affected command. A successful exploit could allow the attacker to cause an affected device to reload spontaneously, resulting in a DoS condition.


Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.


This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ap-cli-dos-tc2EKEpu



     
         
Security Impact Rating:  Medium
   
   
       
CVE: CVE-2023-20056
Source: Cisco Access Point Software Denial of Service Vulnerability (https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ap-cli-dos-tc2EKEpu?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20Access%20Point%20Software%20Denial%20of%20Service%20Vulnerability&vs_k=1)
Title: Re: Cisco Security Advisory - Cisco Access Point Software Denial of Service Vulnerability
Post by: Dieselboy on March 23, 2023, 06:38:03 AM
Dean how do these get pushed in... I reckon we could pull the solution detail summary, though don't know if it could be kept live incase the link gets updated.
Title: Re: Cisco Security Advisory - Cisco Access Point Software Denial of Service Vulnerability
Post by: deanwebb on March 23, 2023, 09:36:52 AM
It's just a straight RSS feed, no way for us to moderate it on our end other than to shut it off if it gets bad.