CVE-2020-18683

Floodlight through 1.2 has poor input validation in checkFlow in StaticFlowEntryPusherResource.java because of undefined fields mishandling.
References
Link Resource
https://drive.google.com/open?id=15I75JBmFYB9rLm9ZvcFtjHy0e2a-9lyO Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:atlassian:floodlight:*:*:*:*:*:*:*:*

History

03 Oct 2021, 01:04

Type Values Removed Values Added
CWE CWE-20
CPE cpe:2.3:a:atlassian:floodlight:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 7.5
v3 : 9.8
References (MISC) https://drive.google.com/open?id=15I75JBmFYB9rLm9ZvcFtjHy0e2a-9lyO - (MISC) https://drive.google.com/open?id=15I75JBmFYB9rLm9ZvcFtjHy0e2a-9lyO - Exploit, Third Party Advisory

30 Sep 2021, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-09-30 02:15

Updated : 2023-12-10 14:09


NVD link : CVE-2020-18683

Mitre link : CVE-2020-18683

CVE.ORG link : CVE-2020-18683


JSON object : View

Products Affected

atlassian

  • floodlight
CWE
CWE-20

Improper Input Validation