CVE-2024-51406: Projectfloodlight Open Sdn Controller

Medium severity, CVSS 6.2. EPSS: 0.2% chance of exploitation in the next 30 days.

Floodlight SDN Open Flow Controller v.1.2 has an issue that allows local hosts to build fake LLDP packets that allow specific clusters to be missed by Floodlight, which in turn leads to missed hosts inside and outside the cluster.

Affected products

Published 2024-11-01. Last modified 2026-06-17.