Show filters
52 Total Results
Displaying 51-52 of 52
Sort by:
Attacker Value
Unknown

CVE-2018-1999020

Disclosure Date: July 23, 2018 (last updated November 27, 2024)
Open Networking Foundation (ONF) ONOS version 1.13.2 and earlier version contains a Directory Traversal vulnerability in core/common/src/main/java/org/onosproject/common/app/ApplicationArchive.java line 35 that can result in arbitrary file deletion (overwrite). This attack appear to be exploitable via a specially crafted zip file should be uploaded.
0
Attacker Value
Unknown

CVE-2018-1000155

Disclosure Date: May 24, 2018 (last updated November 26, 2024)
OpenFlow version 1.0 onwards contains a Denial of Service and Improper authorization vulnerability in OpenFlow handshake: The DPID (DataPath IDentifier) in the features_reply message are inherently trusted by the controller. that can result in Denial of Service, Unauthorized Access, Network Instability. This attack appear to be exploitable via Network connectivity: the attacker must first establish a transport connection with the OpenFlow controller and then initiate the OpenFlow handshake.
0