← Back

CVE-2020-3385

nvd nist
Published: Jul 16, 2020Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

A vulnerability in the deep packet inspection (DPI) engine of Cisco SD-WAN vEdge Routers could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected system. The vulnerability is due to insufficient handling of malformed packets. An attacker could exploit this vulnerability by sending crafted packets through an affected device. A successful exploit could allow the attacker to cause the device to reboot, resulting in a DoS condition.

Affected (5)

2 products
Sd Wan Firmware
Vedge Cloud Router
Configuration A
4 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Cisco
Up to 18.3.0
From 18.4.0 to 18.4.5
From 19.2.0 to 19.2.3
From 19.3.0 to 20.1.1
Running on/withPlatform Versions
Cisco
Vedge 5000
All versions
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions

Related CWEs

Timeline

No history available yet.