← Back

CVE-2022-20717

nvd nist
Published: Apr 15, 2022Modified: Nov 21, 2024

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

A vulnerability in the NETCONF process of Cisco SD-WAN vEdge Routers could allow an authenticated, local attacker to cause an affected device to run out of memory, resulting in a denial of service (DoS) condition. This vulnerability is due to insufficient memory management when an affected device receives large amounts of traffic. An attacker could exploit this vulnerability by sending malicious traffic to an affected device. A successful exploit could allow the attacker to cause the device to crash, resulting in a DoS condition.

Affected (2)

1 product
Sd Wan Vedge Router
Configuration A
2 vulnerable · 8 platform
Vulnerable SoftwareAffected Versions
Cisco
Up to 20.6
Version 20.7
Running on/withPlatform Versions
Cisco
1100 Integrated Services Router
All versions
Citrix
Sd Wan 1000
All versions
Citrix
Sd Wan 110
All versions
Citrix
Sd Wan 1100
All versions
Citrix
Sd Wan 2000
All versions
Citrix
Sd Wan 210
All versions
Citrix
Sd Wan 2100
All versions
Citrix
Sd Wan 5100
All versions

Timeline

No history available yet.