CVE-2024-51406: Projectfloodlight Open Sdn Controller
Medium severity, CVSS 6.2. EPSS: 0.2% chance of exploitation in the next 30 days.
Floodlight SDN Open Flow Controller v.1.2 has an issue that allows local hosts to build fake LLDP packets that allow specific clusters to be missed by Floodlight, which in turn leads to missed hosts inside and outside the cluster.
Affected products
- Projectfloodlight Open Sdn Controller: version 1.2 only
Published 2024-11-01. Last modified 2026-06-17.