CVE-2020-24588

Advisory lineage Upstream: 0 Downstream: 39
Modified
Published: 11 May 2021, 00:00
Last modified:14 Apr 2026, 08:48

Vulnerability Summary

Overall Risk (default)
low
24/100
CVSS Score
3.5 LOW
v3.1 (nvd)
EPSS Score
0.4% LOW
0% probability -0.11%
KEV
Not listed
Ransomware
No reports
Public exploits
1 found
Dark Web
Not detected

Timeline

11 May 2021, 00:00
Published
Vulnerability first disclosed
14 Apr 2026, 08:48
Last Modified
Vulnerability information updated

Description

The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that the A-MSDU flag in the plaintext QoS header field is authenticated. Against devices that support receiving non-SSP A-MSDU frames (which is mandatory as part of 802.11n), an adversary can abuse this to inject arbitrary network packets.

CVSS Metrics

  • v3.1LOWScore: 3.5CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
  • v2.0LOWScore: 2.9AV:A/AC:M/Au:N/C:N/I:P/A:N

EPSS Trends

Current EPSS score: 0.40% Percentile: 61%

Techniques & Countermeasures

  • CWE-327Use of a Broken or Risky Cryptographic Algorithm

    The product uses a broken or risky cryptographic algorithm or protocol.

Affected Systems

  • aristac-100_firmware

    na

  • aristac-110_firmware

    na

  • aristac-120_firmware

    na

  • aristac-130_firmware

    na

  • aristac-200_firmware

    na

  • aristac-230_firmware

    na

  • aristac-235_firmware

    na

  • aristac-250_firmware

    na

  • aristac-260_firmware

    na

  • aristac-65_firmware

    na

  • aristac-75_firmware

    na

  • aristao-105_firmware

    na

  • aristao-90_firmware

    na

  • aristaw-118_firmware

    na

  • aristaw-68_firmware

    na

  • cisco1100_firmware

    na

  • cisco1100-4p_firmware

    na

  • cisco1100-8p_firmware

    na

  • cisco1101-4p_firmware

    na

  • cisco1109-2p_firmware

    na

  • cisco1109-4p_firmware

    na

  • ciscoaironet_1532_firmware

    na

  • ciscoaironet_1542d_firmware

    na

  • ciscoaironet_1542i_firmware

    na

  • ciscoaironet_1800_firmware

    na

  • ciscoaironet_1800i_firmware

    na

  • ciscoaironet_1810_firmware

    na

  • ciscoaironet_1810w_firmware

    na

  • ciscoaironet_1815_firmware

    na

  • ciscoaironet_1815i_firmware

    na

  • ciscoaironet_1832_firmware

    na

  • ciscoaironet_1842_firmware

    na

  • ciscoaironet_1852_firmware

    na

  • ciscoaironet_ap803_firmware

    na

  • ciscoaironet_iw3702_firmware

    na

  • ciscocatalyst_9105_firmware

    na

  • ciscocatalyst_9105axi_firmware

    na

  • ciscocatalyst_9105axw_firmware

    na

  • ciscocatalyst_9115_firmware

    na

  • ciscocatalyst_9115_ap_firmware

    na

  • ciscocatalyst_9115axe_firmware

    na

  • ciscocatalyst_9115axi_firmware

    na

  • ciscocatalyst_9117_firmware

    na

  • ciscocatalyst_9117_ap_firmware

    na

  • ciscocatalyst_9117axi_firmware

    na

  • ciscocatalyst_9120_firmware

    na

  • ciscocatalyst_9120_ap_firmware

    na

  • ciscocatalyst_9120axe_firmware

    na

  • ciscocatalyst_9120axi_firmware

    na

  • ciscocatalyst_9120axp_firmware

    na

Showing first 50 affected entries in server-rendered view.

References (12)