Command Injection Vulnerability in Cisco Wireless LAN Controller
CVE-2015-4224

Currently unrated

Key Information:

Vendor

Cisco

Vendor
CVE Published:
26 June 2015

What is CVE-2015-4224?

Certain Cisco Wireless LAN Controller (WLC) devices running software version 7.0(240.0) have a command injection vulnerability that allows local users to execute arbitrary operating system commands with elevated privileges. This issue arises when crafted commands are sent through the command-line interface (CLI), potentially leading to unauthorized actions on the device. Affected users are encouraged to consult Cisco's guidance for proper mitigation strategies.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2015-4224 : Command Injection Vulnerability in Cisco Wireless LAN Controller