Vulnerability Details CVE-2013-3474
The Web Administrator Interface on Cisco Wireless LAN Controller (WLC) devices allows remote authenticated users to cause a denial of service (device crash) by leveraging membership in the Full Manager managers group, Read Only managers group, or Lobby Ambassador managers group, and sending a request that (1) lacks a parameter value or (2) contains a malformed parameter value, aka Bug IDs CSCuh14313, CSCuh14159, CSCuh14368, and CSCuh14436.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 65.8%
CVSS Severity
CVSS v2 Score 6.3
Products affected by CVE-2013-3474
-
cpe:2.3:h:cisco:wireless_lan_controller:-
-
cpe:2.3:h:cisco:wireless_lan_controller:4.1
-
cpe:2.3:h:cisco:wireless_lan_controller:4.2
-
cpe:2.3:h:cisco:wireless_lan_controller:4.2.173.0
-
cpe:2.3:h:cisco:wireless_lan_controller:5.0
-
cpe:2.3:h:cisco:wireless_lan_controller:5.2