A vulnerability in the Constrained Application Protocol (CoAP) implementation of Cisco IoT Field Network Director could allow an unauthenticated remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient input validation of incoming CoAP traffic. An attacker could exploit this vulnerability by sending a malformed CoAP packet to an affected device. A successful exploit could allow the attacker to force the CoAP server to stop, interrupting communication to the IoT endpoints.
References
Link | Resource |
---|---|
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iot-coap-dos-WTBu6YTq | Vendor Advisory |
Configurations
Information
Published : 2020-04-15 14:15
Updated : 2021-08-12 11:19
NVD link : CVE-2020-3162
Mitre link : CVE-2020-3162
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
cisco
- iot_field_network_director