Vulnerability Description
Atlassian Floodlight Atlassian Floodlight Controller version 1.2 and earlier versions contains a Denial of Service vulnerability in Forwarding module that can result in Improper type cast in Forwarding module allows remote attackers to cause a DoS(thread crash).. This attack appear to be exploitable via network connectivity (Remote attack).
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Atlassian | Floodlight Controller | <= 1.2 |
Related Weaknesses (CWE)
References
- http://gms.cl0udz.com/Floodlight_DoS.pdfExploitMailing ListThird Party Advisory
- http://www.securityfocus.com/bid/104711Third Party AdvisoryVDB Entry
- http://gms.cl0udz.com/Floodlight_DoS.pdfExploitMailing ListThird Party Advisory
- http://www.securityfocus.com/bid/104711Third Party AdvisoryVDB Entry
FAQ
What is CVE-2018-1000617?
CVE-2018-1000617 is a vulnerability with a CVSS score of 7.5 (HIGH). Atlassian Floodlight Atlassian Floodlight Controller version 1.2 and earlier versions contains a Denial of Service vulnerability in Forwarding module that can result in Improper type cast in Forwardin...
How severe is CVE-2018-1000617?
CVE-2018-1000617 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-1000617?
Check the references section above for vendor advisories and patch information. Affected products include: Atlassian Floodlight Controller.