Skip to main content

Vendor archive

broadcom CVEs

Beta · best-effort

644 CVEs tagged to vendor broadcom131 Critical, 250 High, 242 Medium, 21 Low, 0 Unrated.

CVE-2021-42775

Published Nov 12, 2021

Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, have a vulnerability in the remote…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-42774

Published Nov 12, 2021

Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, have a buffer overflow vulnerabilit…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-42773

Published Nov 12, 2021

Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, could allow a user to retrieve an a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-23273

Published Sep 22, 2021

Heap-buffer overflow in the randomize_iparp function in edit_packet.c. of Tcpreplay v4.3.2 allows attackers to cause a denial of service (DOS) via a crafted pcap.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-18976

Published Aug 25, 2021

Buffer Overflow in Tcpreplay v4.3.2 allows attackers to cause a Denial of Service via the 'do_checksum' function in 'checksum.c'. It can be triggered by sending a crafted pcap fil…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-27794

Published Aug 12, 2021

A vulnerability in the authentication mechanism of Brocade Fabric OS versions before Brocade Fabric OS v.9.0.1a, v8.2.3a and v7.4.2h could allow a user to Login with empty passwor…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-27793

Published Aug 12, 2021

ntermittent authorization failure in aaa tacacs+ with Brocade Fabric OS versions before Brocade Fabric OS v9.0.1b and after 9.0.0, also in Brocade Fabric OS before Brocade Fabric…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-27792

Published Aug 12, 2021

The request handling functions in web management interface of Brocade Fabric OS versions before v9.0.1a, v8.2.3a, and v7.4.2h do not properly handle malformed user input, resultin…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-27791

Published Aug 12, 2021

The function that is used to parse the Authentication header in Brocade Fabric OS Web application service before Brocade Fabric OS v9.0.1a and v8.2.3a fails to properly process a…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-27790

Published Aug 12, 2021

The command ipfilter in Brocade Fabric OS before Brocade Fabric OS v.9.0.1a, v8.2.3, and v8.2.0_CBN4, and v7.4.2h uses unsafe string function to process user input. Authenticated…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-15386

Published Jun 9, 2021

Brocade Fabric OS prior to v9.0.1a and 8.2.3a and after v9.0.0 and 8.2.2d may observe high CPU load during security scanning, which could lead to a slower response to CLI commands…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-15385

Published Jun 9, 2021

Brocade SANnav before version 2.1.1 allows an authenticated attacker to list directories, and list files without permission. As a result, users without permission can see folders,…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-15384

Published Jun 9, 2021

Brocade SANNav before version 2.1.1 contains an information disclosure vulnerability. Successful exploitation of internal server information in the initial login response header.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-15380

Published Jun 9, 2021

Brocade SANnav before version 2.1.1 logs account credentials at the ‘trace’ logging level.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-15379

Published Jun 9, 2021

Brocade SANnav before v.2.1.0a could allow remote attackers cause a denial-of-service condition due to a lack of proper validation, of the length of user-supplied data as name for…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-15378

Published Jun 9, 2021

The OVA version of Brocade SANnav before version 2.1.1 installation with IPv6 networking exposes the docker container ports to the network, increasing the potential attack surface.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-15377

Published Jun 9, 2021

Webtools in Brocade SANnav before version 2.1.1 allows unauthenticated users to make requests to arbitrary hosts due to a misconfiguration; this is commonly referred to as Server-…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-15383

Published Jun 9, 2021

Running security scans against the SAN switch can cause config and secnotify processes within the firmware before Brocade Fabric OS v9.0.0, v8.2.2d and v8.2.1e to consume all memo…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 251-275 of 644 CVEsPage 11 of 26