CVE-2024-20394

A vulnerability in Cisco AppDynamics Network Visibility Agent could allow an unauthenticated, local attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to the inability to handle unexpected input. An attacker who has local device access could exploit this vulnerability by sending an HTTP request to the targeted service. A successful exploit could allow the attacker to cause a DoS condition by stopping the Network Agent Service on the local device.
Configurations

No configuration.

History

21 Nov 2024, 08:52

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad en Cisco AppDynamics Network Visibility Agent podría permitir que un atacante local no autenticado provoque una condición de denegación de servicio (DoS) en un dispositivo afectado. Esta vulnerabilidad se debe a la incapacidad de manejar entradas inesperadas. Un atacante que tenga acceso a un dispositivo local podría aprovechar esta vulnerabilidad enviando una solicitud HTTP al servicio objetivo. Un exploit exitoso podría permitir al atacante provocar una condición DoS al detener el servicio del Agente de red en el dispositivo local.
References () https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-appd-netvisdos-9zNbsJtK - () https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-appd-netvisdos-9zNbsJtK -

15 May 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-15 18:15

Updated : 2024-11-21 08:52


NVD link : CVE-2024-20394

Mitre link : CVE-2024-20394

CVE.ORG link : CVE-2024-20394


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation