CVE-2020-3162
published 2020-04-15CVE-2020-3162: A vulnerability in the Constrained Application Protocol (CoAP) implementation of Cisco IoT Field Network Director could allow an unauthenticated remote…
high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
A vulnerability in the Constrained Application Protocol (CoAP) implementation of Cisco IoT Field Network Director could allow an unauthenticated remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient input validation of incoming CoAP traffic. An attacker could exploit this vulnerability by sending a malformed CoAP packet to an affected device. A successful exploit could allow the attacker to force the CoAP server to stop, interrupting communication to the IoT endpoints.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_iot_field_network_director | — | — |
| cisco | iot_field_network_director | < 4.6.0 | 4.6.0 |
| cisco | iot_field_network_director | — | — |