#VU47210 Input validation error in Cisco IOS XE and Cisco cBR-8 Converged Broadband - CVE-2020-3526
Published: September 24, 2020 / Updated: September 30, 2020
Cisco IOS XE
Cisco cBR-8 Converged Broadband
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input in the Common Open Policy Service (COPS) engine. A remote attacker can send a specially crafted COPS message and perform a denial of service (DoS) attack.