10-24-2019 04:04 AM - edited 07-05-2021 11:11 AM
ello,
It seems Cisco secutity advisory have announced critical vulnerability on 16-Oct-2019, I have one question related to same and looking for clarify.
As per my understanding HTTP or HTTPS will be open in WAPs only when it is working in Mobility Express mode, in other modes these ports are not open, in that case these devices are not vulnerable, am I correct ?
Please advice, Thanks.
10-24-2019 04:15 AM
10-24-2019 04:17 AM
I have controllers running 8.0.152.0, 8.3.133.0, 8.3.143.0 and 8.5.135.0.
11-13-2019 01:45 PM
10-24-2019 05:23 AM
11-14-2019 06:58 AM
11-14-2019 12:55 PM
Because of the latest WLC vulnerability (Cisco Wireless LAN Controller HTTP Parsing Engine Denial of Service Vulnerability, published 06 November 2019), there will be another release shortly.
If you are planning to upgrade the controller, it is better to wait for this release.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide