Vulnerabilities (CVE)

Filtered by vendor Onosproject Subscribe
Filtered by product Onos
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-1000078 1 Onosproject 1 Onos 2020-12-07 4.3 MEDIUM 6.1 MEDIUM
Linux foundation ONOS 1.9 is vulnerable to XSS in the device. registration
CVE-2018-12691 1 Onosproject 1 Onos 2018-09-04 4.3 MEDIUM 6.8 MEDIUM
Time-of-check to time-of-use (TOCTOU) race condition in org.onosproject.acl (aka the access control application) in ONOS v1.13 and earlier allows attackers to bypass network access control via data plane packet injection.
CVE-2017-13762 1 Onosproject 1 Onos 2017-09-01 4.3 MEDIUM 6.1 MEDIUM
ONOS versions 1.8.0, 1.9.0, and 1.10.0 are vulnerable to XSS.