Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-3221

A vulnerability in the Flexible NetFlow Version 9 packet processor of Cisco IOS XE Software for Cisco Catalyst 9800 Series Wireless Controllers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper validation of parameters in a Flexible NetFlow Version 9 record. An attacker could exploit this vulnerability by sending a malformed Flexible NetFlow Version 9 packet to the Control and Provisioning of Wireless Access Points (CAPWAP) data port of an affected device. An exploit could allow the attacker to trigger an infinite loop, resulting in a process crash that would cause a reload of the device.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 67.4%
CVSS Severity
CVSS v3 Score 8.6
CVSS v2 Score 7.8
Products affected by CVE-2020-3221
  • Cisco » Catalyst 9800-40 » Version: N/A
    cpe:2.3:h:cisco:catalyst_9800-40:-
  • Cisco » Catalyst 9800-80 » Version: N/A
    cpe:2.3:h:cisco:catalyst_9800-80:-
  • Cisco » Catalyst 9800-Cl » Version: N/A
    cpe:2.3:h:cisco:catalyst_9800-cl:-
  • Cisco » Catalyst 9800-L-C » Version: N/A
    cpe:2.3:h:cisco:catalyst_9800-l-c:-
  • Cisco » Catalyst 9800-L-F » Version: N/A
    cpe:2.3:h:cisco:catalyst_9800-l-f:-
  • Cisco » Catalyst 9800-L » Version: N/A
    cpe:2.3:h:cisco:catalyst_9800-l:-
  • Cisco » Ios Xe » Version: 16.10.1
    cpe:2.3:o:cisco:ios_xe:16.10.1
  • Cisco » Ios Xe » Version: 16.10.1a
    cpe:2.3:o:cisco:ios_xe:16.10.1a
  • Cisco » Ios Xe » Version: 16.10.1b
    cpe:2.3:o:cisco:ios_xe:16.10.1b
  • Cisco » Ios Xe » Version: 16.10.1e
    cpe:2.3:o:cisco:ios_xe:16.10.1e
  • Cisco » Ios Xe » Version: 16.10.1s
    cpe:2.3:o:cisco:ios_xe:16.10.1s
  • Cisco » Ios Xe » Version: 16.10.2
    cpe:2.3:o:cisco:ios_xe:16.10.2
  • Cisco » Ios Xe » Version: 16.11.1
    cpe:2.3:o:cisco:ios_xe:16.11.1
  • Cisco » Ios Xe » Version: 16.11.1a
    cpe:2.3:o:cisco:ios_xe:16.11.1a
  • Cisco » Ios Xe » Version: 16.11.1b
    cpe:2.3:o:cisco:ios_xe:16.11.1b
  • Cisco » Ios Xe » Version: 16.11.1c
    cpe:2.3:o:cisco:ios_xe:16.11.1c
  • Cisco » Ios Xe » Version: 16.11.1s
    cpe:2.3:o:cisco:ios_xe:16.11.1s
  • Cisco » Ios Xe » Version: 16.12.1
    cpe:2.3:o:cisco:ios_xe:16.12.1
  • Cisco » Ios Xe » Version: 16.12.1a
    cpe:2.3:o:cisco:ios_xe:16.12.1a
  • Cisco » Ios Xe » Version: 16.12.1c
    cpe:2.3:o:cisco:ios_xe:16.12.1c
  • Cisco » Ios Xe » Version: 16.12.1s
    cpe:2.3:o:cisco:ios_xe:16.12.1s
  • Cisco » Ios Xe » Version: 16.12.1t
    cpe:2.3:o:cisco:ios_xe:16.12.1t


Contact Us

Shodan ® - All rights reserved