CVE-2020-26139

Advisory lineage Upstream: 0 Downstream: 33
Modified
Published: 11 May 2021, 19:37
Last modified:14 Apr 2026, 08:49

Vulnerability Summary

Overall Risk (default)
low
22/100
CVSS Score
5.3 MEDIUM
v3.1 (nvd)
EPSS Score
2.25% LOW
2% probability +1.84%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

11 May 2021, 19:37
Published
Vulnerability first disclosed
14 Apr 2026, 08:49
Last Modified
Vulnerability information updated

Description

An issue was discovered in the kernel in NetBSD 7.1. An Access Point (AP) forwards EAPOL frames to other clients even though the sender has not yet successfully authenticated to the AP. This might be abused in projected Wi-Fi networks to launch denial-of-service attacks against connected clients and makes it easier to exploit other vulnerabilities in connected clients.

CVSS Metrics

  • v3.1MEDIUMScore: 5.3CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
  • v2.0LOWScore: 2.9AV:A/AC:M/Au:N/C:N/I:N/A:P

EPSS Trends

Current EPSS score: 2.25% Percentile: 85%

Techniques & Countermeasures

  • CWE-287Improper Authentication

    When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Systems

  • aristac-100_firmware

    na

  • aristac-110_firmware

    na

  • aristac-120_firmware

    na

  • aristac-130_firmware

    na

  • aristac-200_firmware

    na

  • aristac-230_firmware

    na

  • aristac-235_firmware

    na

  • aristac-250_firmware

    na

  • aristac-260_firmware

    na

  • aristac-65_firmware

    na

  • aristac-75_firmware

    na

  • aristao-105_firmware

    na

  • aristao-90_firmware

    na

  • aristaw-118_firmware

    na

  • aristaw-68_firmware

    na

  • cisco1100_firmware

    na

  • cisco1100-4p_firmware

    na

  • cisco1100-8p_firmware

    na

  • cisco1101-4p_firmware

    na

  • cisco1109-2p_firmware

    na

  • cisco1109-4p_firmware

    na

  • ciscoaironet_1532_firmware

    na

  • ciscoaironet_1542d_firmware

    na

  • ciscoaironet_1542i_firmware

    na

  • ciscoaironet_1552_firmware

    na

  • ciscoaironet_1552h_firmware

    na

  • ciscoaironet_1572_firmware

    na

  • ciscoaironet_1702_firmware

    na

  • ciscoaironet_1800_firmware

    na

  • ciscoaironet_1800i_firmware

    na

  • ciscoaironet_1810_firmware

    na

  • ciscoaironet_1810w_firmware

    na

  • ciscoaironet_1815_firmware

    na

  • ciscoaironet_1815i_firmware

    na

  • ciscoaironet_1832_firmware

    na

  • ciscoaironet_1842_firmware

    na

  • ciscoaironet_1852_firmware

    na

  • ciscoaironet_2702_firmware

    na

  • ciscoaironet_2800_firmware

    na

  • ciscoaironet_2800e_firmware

    na

  • ciscoaironet_2800i_firmware

    na

  • ciscoaironet_3702_firmware

    na

  • ciscoaironet_3800_firmware

    na

  • ciscoaironet_3800e_firmware

    na

  • ciscoaironet_3800i_firmware

    na

  • ciscoaironet_3800p_firmware

    na

  • ciscoaironet_4800_firmware

    na

  • ciscoaironet_ap803_firmware

    na

  • ciscoaironet_iw3702_firmware

    na

  • ciscocatalyst_9105_firmware

    na

Showing first 50 affected entries in server-rendered view.

References (10)