CVE-2016-6375

medium Cisco
CVSS v3 Base Score
5.3
CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.3%
Exploitation probability in 30 days
Top 48% most likely to be exploited
Attack Characteristics
Attack Vector
Adjacent
Attack Complexity
High
Privileges Required
None
User Interaction
None
Confidentiality
None
Integrity
None
Availability
High
Published: September 12, 2016 (3531 days ago)
Last Modified: May 6, 2026
Vendor: Cisco
Source: NVD

Description

Cisco Wireless LAN Controller (WLC) devices before 8.0.140.0, 8.1.x and 8.2.x before 8.2.121.0, and 8.3.x before 8.3.102.0 allow remote attackers to cause a denial of service (device reload) by sending crafted Inter-Access Point Protocol (IAPP) packets and then sending a traffic stream metrics (TSM) information request over SNMP, aka Bug ID CSCuz40221.

CWE

CWE-399

Affected Products

cisco wireless lan controller softwarecisco wireless lan controller software 6.0cisco wireless lan controller software 7.0cisco wireless lan controller software 7.1cisco wireless lan controller software 7.2cisco wireless lan controller software 7.4

References