Описание
Insecure access controls on internal service ports in Brocade SANnav versions before 3.0.1a allow local, non-administrative host users to communicate directly with backend management services. A local attacker can leverage this exposed access to transmit commands to connected Fabric OS switches under the security context of the SANnav management user.
EPSS
Процентиль: 15%
0.00253
Низкий
Дефекты
CWE-284
Связанные уязвимости
github
9 дней назад
Insecure access controls on internal service ports in Brocade SANnav versions before 3.0.1a allow local, non-administrative host users to communicate directly with backend management services. A local attacker can leverage this exposed access to transmit commands to connected Fabric OS switches under the security context of the SANnav management user.
EPSS
Процентиль: 15%
0.00253
Низкий
Дефекты
CWE-284