{"id":"CVE-2015-1611","aliases":[],"url":"https://o3.security/vulnerability/CVE-2015-1611","summary":"OpenFlow plugin for OpenDaylight allows spoofing the SDN topology","details":"OpenFlow plugin for OpenDaylight before Helium SR3 allows remote attackers to spoof the SDN topology and affect the flow of data, related to \"fake LLDP injection.\"","published":"2022-05-17T02:50:39Z","modified":"2025-04-22T17:57:19.102798Z","cvss":{"score":7.5,"severity":"HIGH","vector":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Maven","name":"org.opendaylight.openflowplugin:openflowplugin","fixedVersion":"0.0.6-Helium-SR3"}],"fix":null,"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2015-1611"},{"type":"WEB","url":"https://git.opendaylight.org/gerrit/#/c/16193"},{"type":"WEB","url":"https://git.opendaylight.org/gerrit/#/c/16208"},{"type":"PACKAGE","url":"https://github.com/opendaylight/openflowplugin"},{"type":"WEB","url":"https://web.archive.org/web/20150510044305/https://wiki.opendaylight.org/view/Security_Advisories#.5BModerate.5D_CVE-2015-1611_CVE-2015-1612_openflowplugin:_topology_spoofing_via_LLDP"},{"type":"WEB","url":"https://web.archive.org/web/20150701104709/https://www.internetsociety.org/sites/default/files/10_4_2.pdf"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2025-04-22T17:57:19.102798Z"}}