Записи Brocade
30 опубликованных записей вендора brocade.
Профиль для исследователя
- Попали в KEV
- 1 · 3,3 %
- С эксплойтом
- 1 · 3,3 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 26,7 %
- Медиана: публикация → KEV
- 1552 дн.
Повторяющиеся классы
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')3
- CWE-20 Improper Input Validation3
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')3
- CWE-264 Permissions, Privileges, and Access Controls2
- CWE-522 Insufficiently Protected Credentials2
- CWE-287 Improper Authentication1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
30 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
85Срочно | CVE-2021-22555Готовый эксплойт | Heap Out-Of-Bounds Write in Netfilter IP6T_SO_SET_REPLACElinux · linux kernel · CWE-787 | Высокая7,8 | KEV | 78,7 % | 7 июл. 2021 г. |
43В плане | CVE-2016-8205Эксплойта нет | A Directory Traversal vulnerability in DashboardFileReceiveServlet in the Brocade Network Advisor versions released prior to and including 1brocade · network advisor · CWE-22 | Критическая9,8 | — | 13,0 % | 14 янв. 2017 г. |
40В плане | CVE-2018-6444Эксплойта нет | A Vulnerability in Brocade Network Advisor versions before 14.1.0 could allow a remote unauthenticated attacker to execute arbitray code.brocade · network advisor · CWE-78 | Критическая9,8 | — | 3,3 % | 22 янв. 2019 г. |
39Наблюдать | CVE-2022-33186Эксплойта нет | A vulnerability in Brocade Fabric OS software v9.1.1, v9.0.1e, v8.2.3c, v7.4.2j, and earlier versions could allow a remote unauthenticated abrocade · fabric operating system · CWE-78 | Критическая9,8 | — | 1,6 % | 8 дек. 2022 г. |
37Наблюдать | CVE-2014-4868Эксплойта нет | The management console on the Brocade Vyatta 5400 vRouter 6.4R(x), 6.6R(x), and 6.7R1 allows remote authenticated users to execute arbitrarybrocade · vyatta 5400 vrouter software · CWE-78 | Критическая9,0 | — | 2,7 % | 7 окт. 2014 г. |
35Наблюдать | CVE-2016-8207Эксплойта нет | A Directory Traversal vulnerability in CliMonitorReportServlet in the Brocade Network Advisor versions released prior to and including 14.0.brocade · network advisor · CWE-22 | Высокая7,5 | — | 15,4 % | 14 янв. 2017 г. |
34Наблюдать | CVE-2016-8206Эксплойта нет | A Directory Traversal vulnerability in servlet SoftwareImageUpload in the Brocade Network Advisor versions released prior to and including 1brocade · network advisor · CWE-22 | Высокая7,5 | — | 14,5 % | 14 янв. 2017 г. |
34Наблюдать | CVE-2018-6443Proof of concept | A vulnerability in Brocade Network Advisor Versions before 14.3.1 could allow an unauthenticated, remote attacker to log in to the JBoss Admbrocade · network advisor · CWE-255 | Высокая8,1 | — | 7,4 % | 22 янв. 2019 г. |
33Наблюдать | CVE-2022-22576Эксплойта нет | An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connectihaxx · curl · CWE-287 | Высокая8,1 | — | 2,2 % | 26 мая 2022 г. |
32Наблюдать | CVE-2007-2764Эксплойта нет | The embedded Linux kernel in certain Sun-Brocade SilkWorm switches before 20070516 does not properly handle a situation in which a non-root linux · linux kernel · CWE-20 | Высокая7,8 | — | 2,4 % | 18 мая 2007 г. |
32Наблюдать | CVE-2016-8201Эксплойта нет | A CSRF vulnerability in Brocade Virtual Traffic Manager versions released prior to and including 11.0 could allow an attacker to trick a logbrocade · virtual traffic manager · CWE-352 | Высокая8,0 | — | 0,5 % | 14 янв. 2017 г. |
31Наблюдать | CVE-2022-27775Эксплойта нет | An information disclosure vulnerability exists in curl 7.65.0 to 7.82.0 are vulnerable that by using an IPv6 address that was in the connecthaxx · curl · CWE-200 | Высокая7,5 | — | 3,2 % | 2 июн. 2022 г. |
31Наблюдать | CVE-2016-8203Эксплойта нет | A memory corruption in the IPsec code path of Brocade NetIron OS on Brocade MLXs 5.8.00 through 5.8.00e, 5.9.00 through 5.9.00bd, 6.0.00, anbrocade · netiron os · CWE-119 | Высокая7,5 | — | 1,8 % | 31 окт. 2016 г. |
31Наблюдать | CVE-2018-6445Эксплойта нет | A Vulnerability in Brocade Network Advisor versions before 14.0.3 could allow a remote unauthenticated attacker to export the current user dbrocade · network advisor | Высокая7,5 | — | 1,7 % | 22 янв. 2019 г. |
30Наблюдать | CVE-2016-8209Эксплойта нет | Improper checks for unusual or exceptional conditions in Brocade NetIron 05.8.00 and later releases up to and including 06.1.00, when the Mabrocade · netiron mlx series firmware · CWE-754 | Высокая7,5 | — | 1,1 % | 8 мая 2017 г. |
28Наблюдать | CVE-2020-13630Эксплойта нет | ext/fts3/fts3.c in SQLite before 3.32.0 has a use-after-free in fts3EvalNextRow, related to the snippet feature.sqlite · sqlite · CWE-416 | Высокая7,0 | — | 1,0 % | 27 мая 2020 г. |
28Наблюдать | CVE-2014-4870Эксплойта нет | /opt/vyatta/bin/sudo-users/vyatta-clear-dhcp-lease.pl on the Brocade Vyatta 5400 vRouter 6.4R(x), 6.6R(x), and 6.7R1 does not properly validbrocade · vyatta 5400 vrouter software · CWE-20 | Высокая7,2 | — | 0,4 % | 7 окт. 2014 г. |
27Наблюдать | CVE-2022-27776Эксплойта нет | A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirechaxx · curl · CWE-522 | Средняя6,5 | — | 3,8 % | 2 июн. 2022 г. |
27Наблюдать | CVE-2025-7397Эксплойта нет | CLI history displays inline passwordsbrocade · ascg · CWE-312 | Средняя6,8 | — | 0,1 % | 17 июл. 2025 г. |
26Наблюдать | CVE-2017-6227Эксплойта нет | A vulnerability in the IPv6 stack on Brocade Fibre Channel SAN products running Brocade Fabric OS (FOS) versions before 7.4.2b, 8.1.2 and 8.brocade · fabric os | Средняя6,5 | — | 0,5 % | 8 февр. 2018 г. |
24Наблюдать | CVE-2017-6225Эксплойта нет | Cross-site scripting (XSS) vulnerability in the web-based management interface of Brocade Fibre Channel SAN products running Brocade Fabric brocade · fabric os · CWE-79 | Средняя6,1 | — | 1,4 % | 8 февр. 2018 г. |
23Наблюдать | CVE-2022-27774Эксплойта нет | An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attackehaxx · curl · CWE-522 | Средняя5,7 | — | 1,8 % | 2 июн. 2022 г. |
22Наблюдать | CVE-2020-13631Эксплойта нет | SQLite before 3.32.0 allows a virtual table to be renamed to the name of one of its shadow tables, related to alter.c and build.c.sqlite · sqlite | Средняя5,5 | — | 0,6 % | 27 мая 2020 г. |
22Наблюдать | CVE-2020-13632Эксплойта нет | ext/fts3/fts3_snippet.c in SQLite before 3.32.0 has a NULL pointer dereference via a crafted matchinfo() query.sqlite · sqlite · CWE-476 | Средняя5,5 | — | 0,6 % | 27 мая 2020 г. |
22Наблюдать | CVE-2022-28161Эксплойта нет | An information exposure through log file vulnerability in Brocade SANNav versions before Brocade SANnav 2.2.0 could allow an authenticated, brocade · sannav · CWE-532 | Средняя5,5 | — | 0,2 % | 9 мая 2022 г. |
- CVE-2021-2255585Срочно
Heap Out-Of-Bounds Write in Netfilter IP6T_SO_SET_REPLACE
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 79 %linux · linux kernel7 июл. 2021 г.
- CVE-2016-820543В плане
A Directory Traversal vulnerability in DashboardFileReceiveServlet in the Brocade Network Advisor versions released prior to and including 1
КритическаяCVSS 9,8Эксплойта нетEPSS 13 %brocade · network advisor14 янв. 2017 г.
- CVE-2018-644440В плане
A Vulnerability in Brocade Network Advisor versions before 14.1.0 could allow a remote unauthenticated attacker to execute arbitray code.
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %brocade · network advisor22 янв. 2019 г.
- CVE-2022-3318639Наблюдать
A vulnerability in Brocade Fabric OS software v9.1.1, v9.0.1e, v8.2.3c, v7.4.2j, and earlier versions could allow a remote unauthenticated a
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %brocade · fabric operating system8 дек. 2022 г.
- CVE-2014-486837Наблюдать
The management console on the Brocade Vyatta 5400 vRouter 6.4R(x), 6.6R(x), and 6.7R1 allows remote authenticated users to execute arbitrary
КритическаяCVSS 9,0Эксплойта нетEPSS 3 %brocade · vyatta 5400 vrouter software7 окт. 2014 г.
- CVE-2016-820735Наблюдать
A Directory Traversal vulnerability in CliMonitorReportServlet in the Brocade Network Advisor versions released prior to and including 14.0.
ВысокаяCVSS 7,5Эксплойта нетEPSS 15 %brocade · network advisor14 янв. 2017 г.
- CVE-2016-820634Наблюдать
A Directory Traversal vulnerability in servlet SoftwareImageUpload in the Brocade Network Advisor versions released prior to and including 1
ВысокаяCVSS 7,5Эксплойта нетEPSS 15 %brocade · network advisor14 янв. 2017 г.
- CVE-2018-644334Наблюдать
A vulnerability in Brocade Network Advisor Versions before 14.3.1 could allow an unauthenticated, remote attacker to log in to the JBoss Adm
ВысокаяCVSS 8,1Proof of conceptEPSS 7 %brocade · network advisor22 янв. 2019 г.
- CVE-2022-2257633Наблюдать
An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connecti
ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %haxx · curl26 мая 2022 г.
- CVE-2007-276432Наблюдать
The embedded Linux kernel in certain Sun-Brocade SilkWorm switches before 20070516 does not properly handle a situation in which a non-root
ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %linux · linux kernel18 мая 2007 г.
- CVE-2016-820132Наблюдать
A CSRF vulnerability in Brocade Virtual Traffic Manager versions released prior to and including 11.0 could allow an attacker to trick a log
ВысокаяCVSS 8,0Эксплойта нетEPSS 0 %brocade · virtual traffic manager14 янв. 2017 г.
- CVE-2022-2777531Наблюдать
An information disclosure vulnerability exists in curl 7.65.0 to 7.82.0 are vulnerable that by using an IPv6 address that was in the connect
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %haxx · curl2 июн. 2022 г.
- CVE-2016-820331Наблюдать
A memory corruption in the IPsec code path of Brocade NetIron OS on Brocade MLXs 5.8.00 through 5.8.00e, 5.9.00 through 5.9.00bd, 6.0.00, an
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %brocade · netiron os31 окт. 2016 г.
- CVE-2018-644531Наблюдать
A Vulnerability in Brocade Network Advisor versions before 14.0.3 could allow a remote unauthenticated attacker to export the current user d
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %brocade · network advisor22 янв. 2019 г.
- CVE-2016-820930Наблюдать
Improper checks for unusual or exceptional conditions in Brocade NetIron 05.8.00 and later releases up to and including 06.1.00, when the Ma
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %brocade · netiron mlx series firmware8 мая 2017 г.
- CVE-2020-1363028Наблюдать
ext/fts3/fts3.c in SQLite before 3.32.0 has a use-after-free in fts3EvalNextRow, related to the snippet feature.
ВысокаяCVSS 7,0Эксплойта нетEPSS 1 %sqlite · sqlite27 мая 2020 г.
- CVE-2014-487028Наблюдать
/opt/vyatta/bin/sudo-users/vyatta-clear-dhcp-lease.pl on the Brocade Vyatta 5400 vRouter 6.4R(x), 6.6R(x), and 6.7R1 does not properly valid
ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %brocade · vyatta 5400 vrouter software7 окт. 2014 г.
- CVE-2022-2777627Наблюдать
A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirec
СредняяCVSS 6,5Эксплойта нетEPSS 4 %haxx · curl2 июн. 2022 г.
- CVE-2025-739727Наблюдать
CLI history displays inline passwords
СредняяCVSS 6,8Эксплойта нетEPSS 0 %brocade · ascg17 июл. 2025 г.
- CVE-2017-622726Наблюдать
A vulnerability in the IPv6 stack on Brocade Fibre Channel SAN products running Brocade Fabric OS (FOS) versions before 7.4.2b, 8.1.2 and 8.
СредняяCVSS 6,5Эксплойта нетEPSS 1 %brocade · fabric os8 февр. 2018 г.
- CVE-2017-622524Наблюдать
Cross-site scripting (XSS) vulnerability in the web-based management interface of Brocade Fibre Channel SAN products running Brocade Fabric
СредняяCVSS 6,1Эксплойта нетEPSS 1 %brocade · fabric os8 февр. 2018 г.
- CVE-2022-2777423Наблюдать
An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacke
СредняяCVSS 5,7Эксплойта нетEPSS 2 %haxx · curl2 июн. 2022 г.
- CVE-2020-1363122Наблюдать
SQLite before 3.32.0 allows a virtual table to be renamed to the name of one of its shadow tables, related to alter.c and build.c.
СредняяCVSS 5,5Эксплойта нетEPSS 1 %sqlite · sqlite27 мая 2020 г.
- CVE-2020-1363222Наблюдать
ext/fts3/fts3_snippet.c in SQLite before 3.32.0 has a NULL pointer dereference via a crafted matchinfo() query.
СредняяCVSS 5,5Эксплойта нетEPSS 1 %sqlite · sqlite27 мая 2020 г.
- CVE-2022-2816122Наблюдать
An information exposure through log file vulnerability in Brocade SANNav versions before Brocade SANnav 2.2.0 could allow an authenticated,
СредняяCVSS 5,5Эксплойта нетEPSS 0 %brocade · sannav9 мая 2022 г.