Known vulnerabilities in Cisco Wireless LAN Controller (WLC) AireOS Software

Software CPE: cpe:2.3:h:cisco_systems:cisco_wireless_lan_controller_wlc_aireos_software:*:*:*:*:*:*:*:*
Total vulnerabilities: 3
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Cisco Wireless LAN Controller (WLC) AireOS Software Cisco Wireless LAN Controller (WLC) AireOS Software is affected by 3 known vulnerabilities: 2 medium, 1 low Critical High Medium Low

Vulnerabilities (3)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU108841 - Buffer Access with Incorrect Length Value
CVE-2025-20191
CWE-805 Medium
No
No
Gibraltar-16.12.1s, 8.10.196.0, 8.10.196.4, 16.12.1, 16.12.1c, 16.12.1s, 16.12.1t, 16.12.1v, 16.12.1w, 16.12.1x, 16.12.1y, 16.12.1z, 16.12.1z1, 16.12.1z2, 16.12.1a, 16.12.2, 16.12.2s, 16.12.2t, 16.12.2a, 16.12.3, 16.12.3s, 16.12.3a, 16.12.4, 16.12.4a, 16.12.5, 16.12.5a, 16.12.5b, 16.12.6, 16.12.6a, 16.12.7, 17.1.1, 17.1.1s, 17.1.1t, 17.1.1a, 17.1.2, 17.1.3, 17.2.1, 17.2.1v, 17.2.1LA, 17.2.1a, 17.2.1r, 17.2.2, 17.2.3, 17.3.1, 17.3.1w, 17.3.1x, 17.3.1z, 17.3.1a, 17.3.2, 17.3.2a, 17.3.3, 17.3.3a, 17.3.4, 17.3.4c, 17.3.4a, 17.3.4b, 17.4.1, 17.4.1c, 17.4.1a, 17.4.1b, 17.4.2, 17.4.2a, 17.5.1, 17.5.1a, 17.6.1, 17.6.1w, 17.6.1x, 17.6.1a, 17.6.2, 17.7.1, 17.7.1a 09.05.2025 SB2025050948
#VU81284 - Missing release of memory after effective lifetime
CVE-2023-20251
CWE-401 Low
No
No
8.10.190.0 29.09.2023 SB2023092924
#VU67721 - Out-of-bounds write
CVE-2022-20769
CWE-787 Medium
No
No
8.10.171.0 28.09.2022 SB2022092837