ZeroHour

CVE-2020-18685

PoC
CVSS 3.1
9.8 critical
EPSS
1%p69
Published
()
Modified
Description

Floodlight through 1.2 has poor input validation in checkFlow in StaticFlowEntryPusherResource.java because of unchecked prerequisites related to TCP or UDP ports, or group or table IDs.

Vendors
atlassian
Products
floodlight
Weakness
CWE-20
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.