VendorsONOS Projectonos1.9.0
Vulnerabilities

ONOS Project ONOS 1.9.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2017-1000081
Linux foundation ONOS 1.9.0 is vulnerable to unauthenticated upload of applications (.oar) resulting in remote code execution.
Published 2017-07-13 · Modified
9.8EPSS 0.030
CVE-2017-1000079
Linux foundation ONOS 1.9.0 is vulnerable to a DoS.
Published 2017-07-13 · Modified
7.5EPSS 0.013
CVE-2017-13763
ONOS versions 1.8.0, 1.9.0, and 1.10.0 do not restrict the amount of memory allocated. The Netty payload size is not limited.
Published 2017-08-30 · Modified
7.5EPSS 0.011
CVE-2017-1000080
Linux foundation ONOS 1.9.0 allows unauthenticated use of websockets.
Published 2017-07-13 · Modified
7.5EPSS 0.010
CVE-2017-13762
ONOS versions 1.8.0, 1.9.0, and 1.10.0 are vulnerable to XSS.
Published 2017-08-30 · Modified
6.1EPSS 0.012
CVE-2017-1000078
Linux foundation ONOS 1.9 is vulnerable to XSS in the device. registration
Published 2017-07-13 · Modified
6.1EPSS 0.007