CVE-2020-3363: Cisco Small Business Smart and Managed Switches Denial of Service Vulnerability
A vulnerability in the IPv6 packet processing engine of Cisco Small Business Smart and Managed Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient validation of incoming IPv6 traffic. An attacker could exploit this vulnerability by sending a crafted IPv6 packet through an affected device. A successful exploit could allow the attacker to cause an unexpected reboot of the switch, leading to a DoS condition. This vulnerability is specific to IPv6 traffic. IPv4 traffic is not affected.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-3363?
CVE-2020-3363 has been categorized with a medium severity rating due to its potential to cause a denial of service condition.
How do I fix CVE-2020-3363?
To fix CVE-2020-3363, please update the affected Cisco Small Business Smart and Managed Switches to their latest firmware versions.
Which devices are affected by CVE-2020-3363?
CVE-2020-3363 affects various models of Cisco Small Business Smart and Managed Switches, including SG250, SG350, and SF500 series.
Can CVE-2020-3363 be exploited remotely?
Yes, CVE-2020-3363 can be exploited by unauthenticated remote attackers.
What impact can CVE-2020-3363 have on my network?
CVE-2020-3363 can cause a denial of service condition, potentially leading to network downtime.