CVE-2018-1000617

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
09/07/2018
Last modified:
08/09/2018

Description

Atlassian Floodlight Atlassian Floodlight Controller version 1.2 and earlier versions contains a Denial of Service vulnerability in Forwarding module that can result in Improper type cast in Forwarding module allows remote attackers to cause a DoS(thread crash).. This attack appear to be exploitable via network connectivity (Remote attack).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:atlassian:floodlight_controller:*:*:*:*:*:*:*:* 1.2 (including)