CVE-2014-3291 describes a denial-of-service vulnerability in Cisco Wireless LAN Controllers (WLCs). Remote attackers can trigger a NULL pointer dereference and device restart by sending malformed Cisco Discovery Protocol packets with a zero value during SNMP polling. The vulnerability has a CVSS score of 5.7, indicating a medium severity, and requires adjacent network access and medium attack complexity to achieve a complete denial of service. There is no public exploit code available (Metasploit, Nuclei, ExploitDB), and it is not listed in the KEV catalog, suggesting it is not actively exploited. Community discussion and media coverage for this CVE are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:h:cisco:wireless_lan_controller:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:A/AC:M/Au:N/C:N/I:N/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.0 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.