Описание
Brocade SANnav before v2.3.0a lacks protection mechanisms on port 2377/TCP and 7946/TCP, which could allow an unauthenticated attacker to sniff the SANnav Docker information.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.3.0a (исключая)
cpe:2.3:a:broadcom:brocade_sannav:*:*:*:*:*:*:*:*
EPSS
Процентиль: 57%
0.00357
Низкий
4.3 Medium
CVSS3
5.3 Medium
CVSS3
Дефекты
CWE-200
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 7.5
github
почти 2 года назад
Brocade SANnav before Brocade SANnav v2.3.1 lacks protection mechanisms on port 2377/TCP and 7946/TCP, which could allow an unauthenticated, remote attacker to reach Kafka APIs and send malicious data.
EPSS
Процентиль: 57%
0.00357
Низкий
4.3 Medium
CVSS3
5.3 Medium
CVSS3
Дефекты
CWE-200
NVD-CWE-noinfo