CVE-2024-20394

A vulnerability in Cisco AppDynamics Network Visibility Agent could allow an unauthenticated, local attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to the inability to handle unexpected input. An attacker who has local device access could exploit this vulnerability by sending an HTTP request to the targeted service. A successful exploit could allow the attacker to cause a DoS condition by stopping the Network Agent Service on the local device.
Configurations

Configuration 1 (hide)

cpe:2.3:a:cisco:appdynamics:*:*:*:*:*:*:*:*

History

04 Aug 2025, 14:21

Type Values Removed Values Added
CWE NVD-CWE-noinfo
CPE cpe:2.3:a:cisco:appdynamics:*:*:*:*:*:*:*:*
References () https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-appd-netvisdos-9zNbsJtK - () https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-appd-netvisdos-9zNbsJtK - Vendor Advisory
First Time Cisco appdynamics
Cisco

21 Nov 2024, 08:52

Type Values Removed Values Added
References () https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-appd-netvisdos-9zNbsJtK - () https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-appd-netvisdos-9zNbsJtK -

15 May 2024, 18:35

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-15 18:15

Updated : 2025-08-04 14:21


NVD link : CVE-2024-20394

Mitre link : CVE-2024-20394

CVE.ORG link : CVE-2024-20394


JSON object : View

Products Affected

cisco

  • appdynamics
CWE
CWE-20

Improper Input Validation

NVD-CWE-noinfo