Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2020-18684

Disclosure Date: September 30, 2021 (last updated February 23, 2025)
Floodlight through 1.2 has an integer overflow in checkFlow in StaticFlowEntryPusherResource.java via priority or port number.
Attacker Value
Unknown

CVE-2020-18683

Disclosure Date: September 30, 2021 (last updated February 23, 2025)
Floodlight through 1.2 has poor input validation in checkFlow in StaticFlowEntryPusherResource.java because of undefined fields mishandling.
Attacker Value
Unknown

CVE-2020-18685

Disclosure Date: September 30, 2021 (last updated February 23, 2025)
Floodlight through 1.2 has poor input validation in checkFlow in StaticFlowEntryPusherResource.java because of unchecked prerequisites related to TCP or UDP ports, or group or table IDs.
Attacker Value
Unknown

CVE-2018-1000617

Disclosure Date: July 09, 2018 (last updated November 27, 2024)
Atlassian Floodlight Atlassian Floodlight Controller version 1.2 and earlier versions contains a Denial of Service vulnerability in Forwarding module that can result in Improper type cast in Forwarding module allows remote attackers to cause a DoS(thread crash).. This attack appear to be exploitable via network connectivity (Remote attack).
0
Attacker Value
Unknown

CVE-2018-1000163

Disclosure Date: April 18, 2018 (last updated November 26, 2024)
Floodlight version 1.2 and earlier contains a Cross Site Scripting (XSS) vulnerability in the web console that can result in javascript injections into the web page. This attack appears to be exploitable via the victim browsing the web console.
0
Attacker Value
Unknown

CVE-2015-6569

Disclosure Date: February 21, 2018 (last updated November 26, 2024)
Race condition in the LoadBalancer module in the Atlassian Floodlight Controller before 1.2 allows remote attackers to cause a denial of service (NULL pointer dereference and thread crash) via a state manipulation attack.
0