PT-2025-5861 · Unknown · Floodlight

·

CVE-2024-57672

·

Published

2025-02-06

·

Updated

2025-04-23

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Floodlight version 1.2
Description An issue in Floodlight allows a local attacker to cause a denial of service via the Topology Manager module, the Topologylnstance module, and the Routing module.
Recommendations For Floodlight version 1.2, consider disabling the Topology Manager module, the Topologylnstance module, and the Routing module as a temporary workaround to minimize the risk of exploitation. Restrict access to these modules to prevent a local attacker from causing a denial of service.

Exploit

Fix

DoS

Resource Exhaustion

Allocation of Resources Without Limits

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-57672

Affected Products

Floodlight