Input validation error in JGS516PE and GS116Ev2 - CVE-2020-35233
Published: March 11, 2021
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to the switch operating system is not able to manage concurrent processes while performing any action with TFTP server. A remote attacker on the local network can pass specially crafted input to the application and perform a denial of service (DoS) attack.
Affected software
GS116Ev2
How to mitigate CVE-2020-35233
GS116Ev2 - update to 2.6.0.48