CVE-2024-20344

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Feb 29, 2024
CWE ID 400

Summary

CVE-2024-20344 is a vulnerability in system resource management in Cisco UCS 6400 and 6500 Series Fabric Interconnects that are in Intersight Managed Mode (IMM). It could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the Device Console UI of an affected device. The vulnerability is due to insufficient rate-limiting of TCP connections, which allows an attacker to send a high number of TCP packets and crash the Device Console UI process. To remediate this vulnerability, a manual reload of the fabric interconnect is required. The potential danger posed by this vulnerability is the disruption of the affected device's functionality due to the DoS condition.

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2024-20344 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options