The HTTP Profiling functionality on Cisco Wireless LAN Controller (WLC) devices with software 7.3.101.0 allows remote authenticated users to execute arbitrary code via a crafted HTTP User-Agent header, aka Bug ID CSCuc15636.
https://exchange.xforce.ibmcloud.com/vulnerabilities/81489
http://www.securitytracker.com/id/1028027
http://www.securityfocus.com/bid/57524
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130123-wlc