Vulnerability index

Browse CVEs

479 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Fabric Operating System MEDIUM 5.4
CVE-2021-27791

The function that is used to parse the Authentication header in Brocade Fabric OS Web application service before Brocade Fabric OS v9.0.1a and v8.2.3…

Fix: 8.2.3a / 9.0.1a+
Fix from $1,600 2021-08-12
Fabric Operating System MEDIUM 5.3
CVE-2021-27793

ntermittent authorization failure in aaa tacacs+ with Brocade Fabric OS versions before Brocade Fabric OS v9.0.1b and after 9.0.0, also in Brocade Fa…

Fix: 8.2.3 / 9.0.1+
Fix from $1,600 2021-08-12
Symantec Proxysg CRITICAL 9.8
CVE-2021-30648

The Symantec Advanced Secure Gateway (ASG) and ProxySG web management consoles are susceptible to an authentication bypass vulnerability. An unauthen…

Fix: 6.5.10.16 / 6.6.5.19+
Fix from $2,300 2021-06-30
Sannav CRITICAL 9.8
CVE-2020-15377

Webtools in Brocade SANnav before version 2.1.1 allows unauthenticated users to make requests to arbitrary hosts due to a misconfiguration; this is c…

Fix: 2.1.1+
Fix from $2,300 2021-06-09
Brocade Sannav HIGH 7.5
CVE-2020-15379

Brocade SANnav before v.2.1.0a could allow remote attackers cause a denial-of-service condition due to a lack of proper validation, of the length of …

Fix: after 2.1.0
Fix from $1,950 2021-06-09
Sannav HIGH 7.5
CVE-2020-15380

Brocade SANnav before version 2.1.1 logs account credentials at the ‘trace’ logging level.

Fix: 2.1.1+
Fix from $1,950 2021-06-09
Brocade Sannav HIGH 7.4
CVE-2020-15387

The host SSH servers of Brocade Fabric OS before Brocade Fabric OS v7.4.2h, v8.2.1c, v8.2.2, v9.0.0, and Brocade SANnav before v2.1.1 utilize keys of…

Fix: 2.1.1 / 7.4.2+
Fix from $1,950 2021-06-09
Sannav MEDIUM 5.4
CVE-2020-15385

Brocade SANnav before version 2.1.1 allows an authenticated attacker to list directories, and list files without permission. As a result, users witho…

Fix: 2.1.1+
Fix from $1,600 2021-06-09
Sannav MEDIUM 5.3
CVE-2020-15378

The OVA version of Brocade SANnav before version 2.1.1 installation with IPv6 networking exposes the docker container ports to the network, increasin…

Fix: 2.1.1+
Fix from $1,600 2021-06-09
Sannav MEDIUM 5.3
CVE-2020-15384

Brocade SANNav before version 2.1.1 contains an information disclosure vulnerability. Successful exploitation of internal server information in the i…

Fix: 2.1.1+
Fix from $1,600 2021-06-09
Fabric Operating System MEDIUM 5.3
CVE-2020-15386

Brocade Fabric OS prior to v9.0.1a and 8.2.3a and after v9.0.0 and 8.2.2d may observe high CPU load during security scanning, which could lead to a s…

Mitigation only
Fix from $1,600 2021-06-09
Sannav HIGH 7.5
CVE-2020-15381

Brocade SANnav before version 2.1.1 contains an Improper Authentication vulnerability that allows cleartext transmission of authentication credential…

Fix: 2.1.1+
Fix from $1,950 2021-06-09
Fabric Operating System HIGH 7.5
CVE-2020-15383

Running security scans against the SAN switch can cause config and secnotify processes within the firmware before Brocade Fabric OS v9.0.0, v8.2.2d a…

Fix: 8.2.1+
Fix from $1,950 2021-06-09
Brocade Sannav HIGH 7.2
CVE-2020-15382

Brocade SANnav before version 2.1.1 uses a hard-coded administrator account with the weak password ‘passw0rd’ if a password is not provided for Postg…

Fix: 2.1.1+
Fix from $1,950 2021-06-09
Rabbitmq Server HIGH 7.8
CVE-2021-22117

RabbitMQ installers on Windows prior to version 3.8.16 do not harden plugin directory permissions, potentially allowing attackers with sufficient loc…

Fix: 3.8.16+
Fix from $1,950 2021-05-18
Vmware Nsx T Data Center HIGH 7.8
CVE-2021-21981

VMware NSX-T contains a privilege escalation vulnerability due to an issue with RBAC (Role based access control) role assignment. Successful exploita…

Patch available
Fix from $1,950 2021-04-19
Ehealth HIGH 7.5
CVE-2021-28248

CA eHealth Performance Manager through 6.3.2.12 is affected by Improper Restriction of Excessive Authentication Attempts. An attacker is able to perf…

Fix: after 6.3.2.12
Fix from $1,950 2021-03-26
Ehealth HIGH 7.8
CVE-2021-28246

CA eHealth Performance Manager through 6.3.2.12 is affected by Privilege Escalation via a Dynamically Linked Shared Object Library. A regular user mu…

Fix: after 6.3.2.12
Fix from $1,950 2021-03-26
Ca Service Catalog HIGH 7.5
CVE-2020-29478

CA Service Catalog 17.2 and 17.3 contain a vulnerability in the default configuration of the Setup Utility that may allow a remote attacker to cause …

Mitigation only
Fix from $1,950 2021-01-05
Fabric Operating System MEDIUM 6.7
CVE-2020-15375

Brocade Fabric OS versions before v9.0.0, v8.2.2c, v8.2.1e, v8.1.2k, v8.2.0_CBN3, v7.4.2g contain an improper input validation weakness in the comman…

Fix: 7.4.2g / 8.1.2k+
Fix from $1,600 2020-12-11
Symantec Messaging Gateway HIGH 7.2
CVE-2020-12594

A privilege escalation flaw allows a malicious, authenticated, privileged CLI user to escalate their privileges on the system and gain full control o…

Fix: 10.7.4+
Fix from $1,950 2020-12-10
Unified Infrastructure Management HIGH 7.8
CVE-2020-28421

CA Unified Infrastructure Management 20.1 and earlier contains a vulnerability in the robot (controller) component that allows local attackers to ele…

Fix: after 20.1
Fix from $1,950 2020-11-23
Brocade Sannav CRITICAL 9.8
CVE-2019-16211

Brocade SANnav versions before v2.1.0, contain a Plaintext Password Storage vulnerability.

Fix: 2.1.0+
Fix from $2,300 2020-09-25
Fabric Operating System CRITICAL 9.8
CVE-2020-15371

Brocade Fabric OS versions before Brocade Fabric OS v9.0.0, v8.2.2c, v8.2.1e, v8.1.2k, v8.2.0_CBN3, contains code injection and privilege escalation …

Mitigation only
Fix from $2,300 2020-09-25
Fabric Operating System CRITICAL 9.8
CVE-2020-15373

Multiple buffer overflow vulnerabilities in REST API in Brocade Fabric OS versions v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c could al…

Mitigation only
Fix from $2,300 2020-09-25
Fabric Operating System CRITICAL 9.8
CVE-2020-15374

Rest API in Brocade Fabric OS v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c is vulnerable to multiple instances of reflected input.

Mitigation only
Fix from $2,300 2020-09-25
Brocade Sannav HIGH 8.8
CVE-2019-16212

A vulnerability in Brocade SANnav versions before v2.1.0 could allow a remote authenticated attacker to conduct an LDAP injection. The vulnerability …

Fix: 2.1.0+
Fix from $1,950 2020-09-25
Fabric Operating System HIGH 8.8
CVE-2020-15369

Supportlink CLI in Brocade Fabric OS Versions v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c does not obfuscate the password field, which …

Mitigation only
Fix from $1,950 2020-09-25
Fabric Operating System HIGH 7.5
CVE-2018-6448

A vulnerability in the management interface in Brocade Fabric OS Versions before Brocade Fabric OS v9.0.0 could allow a remote attacker to perform a …

Fix: 9.0.0+
Fix from $1,950 2020-09-25
Fabric Operating System MEDIUM 6.5
CVE-2020-15370

Brocade Fabric OS versions before Brocade Fabric OS v7.4.2g could allow an authenticated, remote attacker to view a user password in cleartext. The v…

Fix: 7.4.2g+
Fix from $1,600 2020-09-25