1
I Use This!
Inactive
Analyzed 1 day ago. based on code collected 1 day ago.
 

Security

Vulnerabilities per Version

Learn more about BDSAs
 
 

Major Versions

1yr
3yr
5yr
10yr
All
click and drag to zoom
 
 
Security Vulnerabilities for Version:
Severities:
Type
Identifier Related Record Severity Date Published Description Versions Affected
CVE-2024-57673 BDSA-2024-10625 Feb 06, 2025 An issue in floodlight v1.2 allows a local attacker to cause a denial of service via the Topology Manager module and Linkdiscovery module
v1.2
CVE-2024-57672 BDSA-2024-10624 Feb 06, 2025 An issue in floodlight v1.2 allows a local attacker to cause a denial of service via the Topology Manager module, Topologylnstance module, Routing modu more...
v1.2
CVE-2024-51407 BDSA-2024-8046 Nov 01, 2024 Floodlight SDN OpenFlow Controller v.1.2 has an issue that allows local hosts to construct false broadcast ports causing inter-host communication anoma more...
v1.2
CVE-2024-51406 BDSA-2024-8044 Nov 01, 2024 Floodlight SDN Open Flow Controller v.1.2 has an issue that allows local hosts to build fake LLDP packets that allow specific clusters to be missed by more...
v1.2
CVE-2024-29461 BDSA-2024-1293 Apr 12, 2024 An issue in Floodlight SDN OpenFlow Controller v.1.2 allows a remote attacker to cause a denial of service via the datapath id component.
v1.2
CVE-2020-18685 Critical Sep 30, 2021 Floodlight through 1.2 has poor input validation in checkFlow in StaticFlowEntryPusherResource.java because of unchecked prerequisites related to TCP o more...
v1.2, v0.91, v1.1, v1.0, v0.90, v0.85, v0.82, v0.8
CVE-2020-18684 BDSA-2021-3561 Critical Sep 30, 2021 Floodlight through 1.2 has an integer overflow in checkFlow in StaticFlowEntryPusherResource.java via priority or port number.
v1.2, v0.91, v1.1, v1.0, v0.90, v0.85, v0.82, v0.8
CVE-2020-18683 Critical Sep 30, 2021 Floodlight through 1.2 has poor input validation in checkFlow in StaticFlowEntryPusherResource.java because of undefined fields mishandling.
v1.2, v0.91, v1.1, v1.0, v0.90, v0.85, v0.82, v0.8
CVE-2018-1000617 High Jul 09, 2018 Atlassian Floodlight Atlassian Floodlight Controller version 1.2 and earlier versions contains a Denial of Service vulnerability in Forwarding module t more...
v1.2, v0.91, v1.1, v1.0, v0.90, v0.85, v0.82, v0.8
CVE-2018-1000163 Medium Apr 18, 2018 Floodlight version 1.2 and earlier contains a Cross Site Scripting (XSS) vulnerability in the web console that can result in javascript injections into more...
v1.2, v0.91, v1.1, v1.0, v0.90, v0.85, v0.82, v0.8