Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
brocade vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2019-16211
Brocade SANnav versions before v2.1.0, contain a Plaintext Password Storage vulnerability.
Broadcom Brocade Sannav
7.5
CVSSv3
CVE-2020-15379
Brocade SANnav before v.2.1.0a could allow remote attackers cause a denial-of-service condition due to a lack of proper validation, of the length of user-supplied data as name for custom field name.
Broadcom Brocade Sannav
7.2
CVSSv3
CVE-2020-15382
Brocade SANnav before version 2.1.1 uses a hard-coded administrator account with the weak password ‘passw0rd’ if a password is not provided for PostgreSQL at install-time.
Broadcom Brocade Sannav
4.9
CVSSv3
CVE-2022-33187
Brocade SANnav before v2.2.1 logs usernames and encoded passwords in debug-enabled logs. The vulnerability could allow an attacker with admin privilege to read sensitive information.
Broadcom Brocade Sannav
9.8
CVSSv3
CVE-2018-6446
A vulnerability in Brocade Network Advisor Version prior to 14.3.1 could allow an unauthenticated, remote malicious user to log in to the JBoss Administration interface of an affected system using an undocumented user credentials and install additional JEE applications.
Broadcom Brocade Network Advisor
4.4
CVSSv3
CVE-2023-4162
A segmentation fault can occur in Brocade Fabric OS after Brocade Fabric OS v9.0 and before Brocade Fabric OS v9.2.0a through the passwdcfg command. This could allow an authenticated privileged user local user to crash a Brocade Fabric OS swith using the cli “passwdcfg --se...
Brocade Fabric Operating System
8
CVSSv3
CVE-2016-8201
A CSRF vulnerability in Brocade Virtual Traffic Manager versions released prior to and including 11.0 could allow an malicious user to trick a logged-in user into making administrative changes on the traffic manager cluster.
Brocade Virtual Traffic Manager
9.8
CVSSv3
CVE-2016-8204
A Directory Traversal vulnerability in FileReceiveServlet in the Brocade Network Advisor versions released prior to and including 14.0.2 could allow remote malicious users to upload a malicious file in a section of the file system where it can be executed.
Broadcom Brocade Network Advisor
NA
CVE-2011-2760
Brocade BigIron RX switches allow remote malicious users to bypass ACL rules by using 179 as the source port of a packet.
Brocade Bigiron Rx Switch
7.8
CVSSv3
CVE-2023-31432
Through manipulation of passwords or other variables, using commands such as portcfgupload, configupload, license, myid, a non-privileged user could obtain root privileges in Brocade Fabric OS versions before Brocade Fabric OS v9.1.1c and v9.2.0.
Broadcom Brocade Fabric Operating System
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-17519
open redirect
CVE-2024-21683
cache poisoning
CVE-2021-47524
CVE-2021-47521
CVE-2024-5229
CVE-2021-47560
local
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »