High severity7.1NVD Advisory· Published Mar 19, 2020· Updated Jun 17, 2026
CVE-2020-3264
CVE-2020-3264
Description
A vulnerability in Cisco SD-WAN Solution software could allow an authenticated, local attacker to cause a buffer overflow on an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted traffic to an affected device. A successful exploit could allow the attacker to gain access to information that they are not authorized to access and make changes to the system that they are not authorized to make.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:o:cisco:sd-wan_firmware:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:cisco:sd-wan_firmware:*:*:*:*:*:*:*:*range: <18.4.5
- cpe:2.3:o:cisco:sd-wan_firmware:20.1.0:*:*:*:*:*:*:*
- cpe:2.3:o:cisco:sd-wan_firmware:20.3.0:*:*:*:*:*:*:*
- Range: n/a
Patches
Vulnerability mechanics
References
2- github.com/orangecertcc/security-research/security/advisories/GHSA-wwq2-pxrj-v62rnvdExploitThird Party Advisory
- tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwanbo-QKcABnS2nvdVendor Advisory
News mentions
0No linked articles in our index yet.