peter bassill · operator
$ cve CVE-2006-0354 JSON

CVE-2006-0354 EXPLOIT

5.5
MEDIUM · CVSS 2.0 · EPSS 10.5% (pctl 96)

Patch early

A public exploit exists.

Description

Cisco IOS before 12.3-7-JA2 on Aironet Wireless Access Points (WAP) allows remote authenticated users to cause a denial of service (termination of packet passing or termination of client connections) by sending the management interface a large number of spoofed ARP packets, which creates a large ARP table that exhausts memory, aka Bug ID CSCsc16644.

Scoring

CVSS5.5 (MEDIUM, v2.0)
VectorAV:A/AC:L/Au:S/C:N/I:N/A:C
EPSS10.49% — more likely to be exploited than 96% of all CVEs
WeaknessCWE-399
On CISA KEVno
Public exploityes
Published2006-01-22
Last modified2026-06-16

Affected (8)

VendorProduct
ciscoaironet ap1100
ciscoaironet ap1130ag
ciscoaironet ap1200
ciscoaironet ap1230ag
ciscoaironet ap1240ag
ciscoaironet ap1300
ciscoaironet ap1400
ciscoaironet ap350

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD