CVE-2018-1000615: Onosproject Onos

High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.

ONOS ONOS Controller version 1.13.1 and earlier contains a Denial of Service (Service crash) vulnerability in OVSDB component in ONOS that can result in An adversary can remotely crash OVSDB service ONOS controller via a normal switch.. This attack appear to be exploitable via the attacker should be able to control or forge a switch in the network..

Affected products

Published 2018-07-09. Last modified 2026-06-17.