CVE-2020-3385

A vulnerability in the deep packet inspection (DPI) engine of Cisco SD-WAN vEdge Routers could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected system. The vulnerability is due to insufficient handling of malformed packets. An attacker could exploit this vulnerability by sending crafted packets through an affected device. A successful exploit could allow the attacker to cause the device to reboot, resulting in a DoS condition.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:cisco:sd-wan_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:cisco:sd-wan_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:cisco:sd-wan_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:cisco:sd-wan_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:cisco:vedge_5000:-:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:cisco:vedge_cloud_router:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2020-07-16 18:15

Updated : 2023-12-10 13:27


NVD link : CVE-2020-3385

Mitre link : CVE-2020-3385

CVE.ORG link : CVE-2020-3385


JSON object : View

Products Affected

cisco

  • sd-wan_firmware
  • vedge_5000
  • vedge_cloud_router
CWE
NVD-CWE-noinfo CWE-371

State Issues