CVE-2020-3559: Cisco Aironet Access Point Authentication Flood Denial of Service Vulnerability
A vulnerability in Cisco Aironet Access Point (AP) Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to improper handling of clients that are trying to connect to the AP. An attacker could exploit this vulnerability by sending authentication requests from multiple clients to an affected device. A successful exploit could allow the attacker to cause the affected device to reload.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-3559?
CVE-2020-3559 is a vulnerability in Cisco Aironet Access Point (AP) Software that could allow an unauthenticated remote attacker to cause a device to reload.
How does the vulnerability in Cisco Aironet Access Point (AP) Software occur?
The vulnerability is due to improper handling of clients trying to connect to the AP.
What is the severity of CVE-2020-3559?
The severity of CVE-2020-3559 is high with a CVSS score of 8.6.
Which software versions are affected by CVE-2020-3559?
The affected software versions are Cisco Wireless LAN Controller 8.9 to 8.10.112.0.
How can I fix the CVE-2020-3559 vulnerability?
To fix the vulnerability, it is recommended to upgrade the Cisco Aironet Access Point (AP) Software to a version that is not vulnerable.