Known Vulnerabilities for products from Brocade

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Brocade".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Brocade can be found at device.report : Brocade

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2022-22576 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 8.1 - HIGH 2022-05-26 2024-03-27
CVE-2021-22555 A heap out-of-bounds write affecting Linux since v2.6.19-rc1 was discovered in net/netfilter/x_tables.c. This allows an attac... 7.8 - HIGH 2021-07-07 2022-03-31
CVE-2020-15376 Brocade Fabric OS versions before v9.0.0 and after version v8.1.0, configured in Virtual Fabric mode contain a weakness in th... 4.3 - MEDIUM 2020-12-11 2021-09-09
CVE-2020-15375 Brocade Fabric OS versions before v9.0.0, v8.2.2c, v8.2.1e, v8.1.2k, v8.2.0_CBN3, v7.4.2g contain an improper input validatio... 6.7 - MEDIUM 2020-12-11 2021-06-22
CVE-2020-15374 Rest API in Brocade Fabric OS v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c is vulnerable to multiple instances o... 9.8 - CRITICAL 2020-09-25 2021-08-23
CVE-2020-15373 Multiple buffer overflow vulnerabilities in REST API in Brocade Fabric OS versions v8.2.1 through v8.2.1d, and 8.2.2 versions... 9.8 - CRITICAL 2020-09-25 2021-08-23
CVE-2020-15372 A vulnerability in the command-line interface in Brocade Fabric OS before Brocade Fabric OS v8.2.2a1, 8.2.2c, v7.4.2g, v8.2.0... 5.5 - MEDIUM 2020-09-25 2021-06-22
CVE-2020-15371 Brocade Fabric OS versions before Brocade Fabric OS v9.0.0, v8.2.2c, v8.2.1e, v8.1.2k, v8.2.0_CBN3, contains code injection a... 9.8 - CRITICAL 2020-09-25 2021-08-23
CVE-2020-15370 Brocade Fabric OS versions before Brocade Fabric OS v7.4.2g could allow an authenticated, remote attacker to view a user pass... 6.5 - MEDIUM 2020-09-25 2021-06-22
CVE-2020-15369 Supportlink CLI in Brocade Fabric OS Versions v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c does not obfuscate th... 8.8 - HIGH 2020-09-25 2021-08-23
CVE-2020-13632 ext/fts3/fts3_snippet.c in SQLite before 3.32.0 has a NULL pointer dereference via a crafted matchinfo() query. 5.5 - MEDIUM 2020-05-27 2023-11-07
CVE-2020-13631 SQLite before 3.32.0 allows a virtual table to be renamed to the name of one of its shadow tables, related to alter.c and bui... 5.5 - MEDIUM 2020-05-27 2023-11-07
CVE-2020-13630 ext/fts3/fts3.c in SQLite before 3.32.0 has a use-after-free in fts3EvalNextRow, related to the snippet feature. 7 - HIGH 2020-05-27 2023-11-07
CVE-2019-16204 Brocade Fabric OS Versions before v7.4.2f, v8.2.2a, v8.1.2j and v8.2.1d could expose external passwords, common secrets or au... 7.5 - HIGH 2020-02-05 2022-01-01
CVE-2019-16203 Brocade Fabric OS Versions before v8.2.2a and v8.2.1d could expose the credentials of the remote ESRS server when these crede... 7.5 - HIGH 2020-02-05 2022-01-01
CVE-2018-6449 Host Header Injection vulnerability in the http management interface in Brocade Fabric OS versions before v9.0.0 could allow ... 6.1 - MEDIUM 2020-09-25 2021-09-09
CVE-2018-6448 A vulnerability in the management interface in Brocade Fabric OS Versions before Brocade Fabric OS v9.0.0 could allow a remot... 7.5 - HIGH 2020-09-25 2021-07-30
CVE-2018-6447 A Reflective XSS Vulnerability in HTTP Management Interface in Brocade Fabric OS versions before Brocade Fabric OS v9.0.0, v8... 5.4 - MEDIUM 2020-09-25 2021-08-23
CVE-2018-6445 A Vulnerability in Brocade Network Advisor versions before 14.0.3 could allow a remote unauthenticated attacker to export the... 7.5 - HIGH 2019-01-22 2020-08-24
CVE-2018-6444 A Vulnerability in Brocade Network Advisor versions before 14.1.0 could allow a remote unauthenticated attacker to execute ar... 9.8 - CRITICAL 2019-01-22 2019-06-19

Known software with vulnerabilities from Brocade

Type Vendor Product Version
ApplicationBrocadeData Center Fabric Manager10.4.0.0
ApplicationBrocadeEzswitchsetup2.0.0.0
Operating
System
BrocadeFabric Os-
ApplicationBrocadeNetwork Advisor11.0.0.0
ApplicationBrocadeSan Health Diagnostics Capture3.1.4a
ApplicationBrocadeSan Health Professional1.0.0.4
HardwareBrocadeSilkworm 12000 Director-
HardwareBrocadeSilkworm 200e Switch-
HardwareBrocadeSilkworm 24000 Director-
HardwareBrocadeSilkworm 3250 Fabric Switch-
HardwareBrocadeSilkworm 3850 Fabric Switch-
HardwareBrocadeSilkworm 3900 Switch-
HardwareBrocadeSilkworm 48000 Director-
HardwareBrocadeSilkworm 4900 Fibre Channel Switch-
ApplicationBrocadeSmi Agent120.7.2.0
HardwareBrocadeVyatta Vrouter-
ApplicationBrocadeVyatta Vrouter Software6.6