Input Validation Vulnerability in Floodlight Vendor's StaticFlowEntryPusherResource Java Component
CVE-2020-18683
9.8CRITICAL
What is CVE-2020-18683?
Floodlight, version 1.2, contains a significant input validation flaw within the StaticFlowEntryPusherResource.java component. This vulnerability arises from the mishandling of undefined fields in the checkFlow method. An attacker could exploit this weakness to manipulate the system's behavior leading to unintended effects on network management functionalities.