Known vulnerabilities in Cisco Wireless LAN Controller (WLC) AireOS Software
Vendor:
Cisco Systems, Inc
Software CPE:
cpe:2.3:h:cisco_systems:cisco_wireless_lan_controller_wlc_aireos_software:*:*:*:*:*:*:*:*
Website:
https://www.cisco.com
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
8.10.196.0
8.10.196.4
16.12.1a
16.12.1c
16.12.1s
16.12.1t
16.12.1v
16.12.1w
16.12.1x
16.12.1y
16.12.1z
16.12.1z1
16.12.1z2
16.12.2
16.12.2a
16.12.2s
16.12.2t
16.12.3
16.12.3a
16.12.3s
16.12.4
16.12.4a
16.12.5
16.12.5a
16.12.5b
16.12.6
16.12.6a
16.12.7
17.1.1
17.1.1a
17.1.1s
17.1.1t
17.1.2
17.1.3
17.2.1
17.2.1LA
17.2.1a
17.2.1r
17.2.1v
17.2.2
17.2.3
17.3.1
17.3.1a
17.3.1w
17.3.1x
17.3.1z
17.3.2
17.3.2a
17.3.3
17.3.3a
17.3.4
17.3.4a
17.3.4b
17.3.4c
17.4.1
17.4.1a
17.4.1b
17.4.1c
17.4.2
17.4.2a
17.5.1
17.5.1a
17.6.1
17.6.1a
17.6.1w
17.6.1x
17.6.2
17.7.1
17.7.1a
Gibraltar-16.12.1s
16.12.1
8.10.190.0
8.10.185
8.10.150
8.10.171.0
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU108841 - Buffer Access with Incorrect Length Value CVE-2025-20191 |
CWE-805 | Medium | Gibraltar-16.12.1s, 8.10.196.0, 8.10.196.4, 16.12.1, 16.12.1c, 16.12.1s, 16.12.1t, 16.12.1v, 16.12.1w, 16.12.1x, 16.12.1y, 16.12.1z, 16.12.1z1, 16.12.1z2, 16.12.1a, 16.12.2, 16.12.2s, 16.12.2t, 16.12.2a, 16.12.3, 16.12.3s, 16.12.3a, 16.12.4, 16.12.4a, 16.12.5, 16.12.5a, 16.12.5b, 16.12.6, 16.12.6a, 16.12.7, 17.1.1, 17.1.1s, 17.1.1t, 17.1.1a, 17.1.2, 17.1.3, 17.2.1, 17.2.1v, 17.2.1LA, 17.2.1a, 17.2.1r, 17.2.2, 17.2.3, 17.3.1, 17.3.1w, 17.3.1x, 17.3.1z, 17.3.1a, 17.3.2, 17.3.2a, 17.3.3, 17.3.3a, 17.3.4, 17.3.4c, 17.3.4a, 17.3.4b, 17.4.1, 17.4.1c, 17.4.1a, 17.4.1b, 17.4.2, 17.4.2a, 17.5.1, 17.5.1a, 17.6.1, 17.6.1w, 17.6.1x, 17.6.1a, 17.6.2, 17.7.1, 17.7.1a | 09.05.2025 |
SB2025050948 |
||
| #VU81284 - Missing release of memory after effective lifetime CVE-2023-20251 |
CWE-401 | Low | 8.10.190.0 | 29.09.2023 |
SB2023092924 |
||
| #VU67721 - Out-of-bounds write CVE-2022-20769 |
CWE-787 | Medium | 8.10.171.0 | 28.09.2022 |
SB2022092837 |