Vulnerabilities > Opennetworking > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-04-20 CVE-2022-29604 Improper Handling of Case Sensitivity vulnerability in Opennetworking Onos 2.5.1
An issue was discovered in ONOS 2.5.1.
network
low complexity
opennetworking CWE-178
critical
9.8
2023-04-20 CVE-2022-29606 Improper Input Validation vulnerability in Opennetworking Onos 2.5.1
An issue was discovered in ONOS 2.5.1.
network
low complexity
opennetworking CWE-20
critical
9.8
2018-05-24 CVE-2018-1000155 Incorrect Authorization vulnerability in Opennetworking Openflow
OpenFlow version 1.0 onwards contains a Denial of Service and Improper authorization vulnerability in OpenFlow handshake: The DPID (DataPath IDentifier) in the features_reply message are inherently trusted by the controller.
network
low complexity
opennetworking CWE-863
critical
9.8