projectfloodlight records
8 published records for vendor projectfloodlight.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-20 Improper Input Validation3
- CWE-400 Uncontrolled Resource Consumption2
- CWE-290 Authentication Bypass by Spoofing1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
8 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
30Monitor | CVE-2013-7333No exploit | A vulnerability in version 0.90 of the Open Floodlight SDN controller software could allow an attacker with access to the OpenFlow control nprojectfloodlight · open sdn controller · CWE-20 | High7.5 | — | 1.1% | Oct 23, 2019 |
30Monitor | CVE-2014-2304No exploit | A vulnerability in version 0.90 of the Open Floodlight SDN controller software could result in a denial of service attack and crashing of thprojectfloodlight · open sdn controller · CWE-20 | High7.5 | — | 1.1% | Oct 23, 2019 |
25Monitor | CVE-2024-29461No exploit | An issue in Floodlight SDN OpenFlow Controller v.1.2 allows a remote attacker to cause a denial of service via the datapath id component.projectfloodlight · open sdn controller · CWE-20 | Medium6.3 | — | 0.5% | Apr 12, 2024 |
24Monitor | CVE-2018-1000163No exploit | Floodlight version 1.2 and earlier contains a Cross Site Scripting (XSS) vulnerability in the web console that can result in javascript injeprojectfloodlight · floodlight · CWE-79 | Medium6.1 | — | 0.7% | Apr 18, 2018 |
24Monitor | CVE-2024-51407No exploit | Floodlight SDN OpenFlow Controller v.1.2 has an issue that allows local hosts to construct false broadcast ports causing inter-host communicprojectfloodlight · floodlight | Medium6.2 | — | 0.2% | Nov 1, 2024 |
24Monitor | CVE-2024-51406No exploit | Floodlight SDN Open Flow Controller v.1.2 has an issue that allows local hosts to build fake LLDP packets that allow specific clusters to beprojectfloodlight · open sdn controller · CWE-290 | Medium6.2 | — | 0.2% | Nov 1, 2024 |
22Monitor | CVE-2024-57673No exploit | An issue in floodlight v1.2 allows a local attacker to cause a denial of service via the Topology Manager module and Linkdiscovery moduleprojectfloodlight · floodlight · CWE-400 | Medium5.5 | — | 0.2% | Feb 6, 2025 |
22Monitor | CVE-2024-57672No exploit | An issue in floodlight v1.2 allows a local attacker to cause a denial of service via the Topology Manager module, Topologylnstance module, Rprojectfloodlight · floodlight · CWE-400 | Medium5.5 | — | 0.1% | Feb 6, 2025 |
- CVE-2013-733330Monitor
A vulnerability in version 0.90 of the Open Floodlight SDN controller software could allow an attacker with access to the OpenFlow control n
HighCVSS 7.5No exploitEPSS 1%projectfloodlight · open sdn controllerOct 23, 2019
- CVE-2014-230430Monitor
A vulnerability in version 0.90 of the Open Floodlight SDN controller software could result in a denial of service attack and crashing of th
HighCVSS 7.5No exploitEPSS 1%projectfloodlight · open sdn controllerOct 23, 2019
- CVE-2024-2946125Monitor
An issue in Floodlight SDN OpenFlow Controller v.1.2 allows a remote attacker to cause a denial of service via the datapath id component.
MediumCVSS 6.3No exploitEPSS 1%projectfloodlight · open sdn controllerApr 12, 2024
- CVE-2018-100016324Monitor
Floodlight version 1.2 and earlier contains a Cross Site Scripting (XSS) vulnerability in the web console that can result in javascript inje
MediumCVSS 6.1No exploitEPSS 1%projectfloodlight · floodlightApr 18, 2018
- CVE-2024-5140724Monitor
Floodlight SDN OpenFlow Controller v.1.2 has an issue that allows local hosts to construct false broadcast ports causing inter-host communic
MediumCVSS 6.2No exploitEPSS 0%projectfloodlight · floodlightNov 1, 2024
- CVE-2024-5140624Monitor
Floodlight SDN Open Flow Controller v.1.2 has an issue that allows local hosts to build fake LLDP packets that allow specific clusters to be
MediumCVSS 6.2No exploitEPSS 0%projectfloodlight · open sdn controllerNov 1, 2024
- CVE-2024-5767322Monitor
An issue in floodlight v1.2 allows a local attacker to cause a denial of service via the Topology Manager module and Linkdiscovery module
MediumCVSS 5.5No exploitEPSS 0%projectfloodlight · floodlightFeb 6, 2025
- CVE-2024-5767222Monitor
An issue in floodlight v1.2 allows a local attacker to cause a denial of service via the Topology Manager module, Topologylnstance module, R
MediumCVSS 5.5No exploitEPSS 0%projectfloodlight · floodlightFeb 6, 2025