← Vulnerability feed

Vulnerability record · CVE-2006-0354 · published 22 January 2006

CVE-2006-0354: Cisco aironet ap1100 vulnerability

Cisco · Aironet Ap1100

Cisco IOS before 12.3-7-JA2 on Aironet Wireless Access Points (WAP) allows remote authenticated users to cause a denial of service (termination of packet passing or termination of client connections) by sending the management interface a large number of spoofed ARP packets, which creates a large ARP table that exhausts memory, aka Bug ID CSCsc16644.

5.5 CVSS 2.0 Medium EPSS 10% · top 4.4% CWE-399 · CWE-399
5.5CVSS 2.0 base score
10%EPSS exploitation probability, 30 days
NoNot in CISA KEV
8Affected product versions listed by NVD
18References, 2 tagged exploit
16 Jun 2026Last modified by NVD

Description

Cisco IOS before 12.3-7-JA2 on Aironet Wireless Access Points (WAP) allows remote authenticated users to cause a denial of service (termination of packet passing or termination of client connections) by sending the management interface a large number of spoofed ARP packets, which creates a large ARP table that exhausts memory, aka Bug ID CSCsc16644.

AV:A/AC:L/Au:S/C:N/I:N/A:C

Affected products

8 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2006-0354 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2012-1350Cisco ios vulnerabilityCisco IOS 12.3 and 12.4 on Aironet access points allows remote attackers to cause a denial of service (radio-interface input-queue hang) via IAPP 0x3…EPSS 1.9%7.8CVE-2009-2976Cisco aironet ap1100 vulnerabilityCisco Aironet Lightweight Access Point (AP) devices send the contents of certain multicast data frames in cleartext, which allows remote attackers to…EPSS 1.4%7.3CVE-2009-2861Cisco aironet ap1100 vulnerabilityThe Over-the-Air Provisioning (OTAP) functionality on Cisco Aironet Lightweight Access Point 1100 and 1200 devices does not properly implement access…EPSS 1.0%5.0CVE-2005-3482Cisco aironet ap1131 vulnerabilityCisco 1200, 1131, and 1240 series Access Points, when operating in Lightweight Access Point Protocol (LWAPP) mode and controlled by 2000 and 4400 ser…EPSS 1.6%5.0CVE-2005-0356TCP PAWS timestamp handling allows remote connection lossMultiple TCP implementations that enable the timestamps option with Protection Against Wrapped Sequence Numbers (PAWS) can be forced to discard valid…EPSS 83%analysed8.8CVE-2010-0806Microsoft Internet Explorer Peer Objects use-after-free allows remote code executionInternet Explorer 6, 6 SP1 and 7 contain a use-after-free in the Peer Objects component (iepeers.dll), where an object is accessed after deletion, le…KEVEPSS 82%analysed5.9CVE-2018-0180Cisco IOS Login Block feature denial-of-service via crafted login attemptsMultiple flaws in the Login Enhancements (Login Block) feature of Cisco IOS Software let an unauthenticated remote attacker trigger a reload of the d…KEVEPSS 4.9%analysed5.9CVE-2018-0179Cisco IOS Login Block feature denial-of-service flawMultiple vulnerabilities in the Login Enhancements (Login Block) feature of Cisco IOS Software let an unauthenticated, remote attacker trigger a relo…KEVEPSS 4.9%analysed

Source: NIST National Vulnerability Database (record CVE-2006-0354), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.