CVE-2020-18685
CVE-2020-18685
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
30 Sep 2021Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Floodlight through 1.2 has poor input validation in checkFlow in StaticFlowEntryPusherResource.java because of unchecked prerequisites related to TCP or UDP ports, or group or table IDs.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →