Vulnerabilities > Opennetworking
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-04-20 | CVE-2022-24109 | Resource Exhaustion vulnerability in Opennetworking Onos 2.5.1 An issue was discovered in ONOS 2.5.1. | 6.5 |
2023-04-20 | CVE-2022-29604 | Improper Handling of Case Sensitivity vulnerability in Opennetworking Onos 2.5.1 An issue was discovered in ONOS 2.5.1. | 9.8 |
2023-04-20 | CVE-2022-29605 | Always-Incorrect Control Flow Implementation vulnerability in Opennetworking Onos 2.5.1 An issue was discovered in ONOS 2.5.1. | 7.5 |
2023-04-20 | CVE-2022-29606 | Improper Input Validation vulnerability in Opennetworking Onos 2.5.1 An issue was discovered in ONOS 2.5.1. | 9.8 |
2023-04-20 | CVE-2022-29607 | Always-Incorrect Control Flow Implementation vulnerability in Opennetworking Onos 2.5.1 An issue was discovered in ONOS 2.5.1. | 7.5 |
2023-04-20 | CVE-2022-29608 | Unspecified vulnerability in Opennetworking Onos 2.5.1 An issue was discovered in ONOS 2.5.1. | 7.5 |
2023-04-20 | CVE-2022-29609 | Always-Incorrect Control Flow Implementation vulnerability in Opennetworking Onos 2.5.1 An issue was discovered in ONOS 2.5.1. | 5.3 |
2023-04-20 | CVE-2022-29944 | Incorrect Comparison vulnerability in Opennetworking Onos 2.5.1 An issue was discovered in ONOS 2.5.1. | 5.3 |
2023-03-14 | CVE-2023-24279 | Cross-site Scripting vulnerability in Opennetworking Onos A cross-site scripting (XSS) vulnerability in Open Networking Foundation ONOS from version v1.9.0 to v2.7.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the url parameter of the API documentation dashboard. | 6.1 |
2020-02-20 | CVE-2019-11189 | Authentication Bypass by Spoofing vulnerability in Opennetworking Onos Authentication Bypass by Spoofing in org.onosproject.acl (access control) and org.onosproject.mobility (host mobility) in ONOS v2.0 and earlier allows attackers to bypass network access control via data plane packet injection. | 7.5 |