A vulnerability in the deep packet inspection (DPI) engine of Cisco SD-WAN vEdge Routers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper processing of FTP traffic. An attacker could exploit this vulnerability by sending crafted FTP packets through an affected device. A successful exploit could allow the attacker to make the device reboot continuously, causing a DoS condition.
2020-07-16T18:15:18.267
2024-11-21T05:30:53.670
Modified
CVSSv3.1: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:N/I:N/A:C
10.0
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | cisco | sd-wan_firmware | 19.2.0 | Yes |
Operating System | cisco | sd-wan_firmware | 19.2.1 | Yes |
Operating System | cisco | sd-wan_firmware | 19.2.097 | Yes |
Operating System | cisco | sd-wan_firmware | 19.2.098 | Yes |
Hardware | cisco | vedge_5000 | - | No |
Application | cisco | vedge_cloud_router | - | Yes |