Filtered by vendor Atlassian Subscriptions
Filtered by product Floodlight Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2015-6569 1 Atlassian 1 Floodlight 2024-08-06 N/A
Race condition in the LoadBalancer module in the Atlassian Floodlight Controller before 1.2 allows remote attackers to cause a denial of service (NULL pointer dereference and thread crash) via a state manipulation attack.
CVE-2020-18684 1 Atlassian 1 Floodlight 2024-08-04 9.8 Critical
Floodlight through 1.2 has an integer overflow in checkFlow in StaticFlowEntryPusherResource.java via priority or port number.
CVE-2020-18685 1 Atlassian 1 Floodlight 2024-08-04 9.8 Critical
Floodlight through 1.2 has poor input validation in checkFlow in StaticFlowEntryPusherResource.java because of unchecked prerequisites related to TCP or UDP ports, or group or table IDs.
CVE-2020-18683 1 Atlassian 1 Floodlight 2024-08-04 9.8 Critical
Floodlight through 1.2 has poor input validation in checkFlow in StaticFlowEntryPusherResource.java because of undefined fields mishandling.