CVE-2018-6445: High severity netapp brocade network advisor vulnerability
A Vulnerability in Brocade Network Advisor versions before 14.0.3 could allow a remote unauthenticated attacker to export the current user database which includes the encrypted (not hashed) password of the systems. The attacker could gain access to the Brocade Network Advisor System after extracting/decrypting the passwords.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2018-6445.
What is the title of the vulnerability?
The title of the vulnerability is 'A Vulnerability in Brocade Network Advisor versions before 14.0.3 could allow a remote unauthenticated attacker to export the current user database which includes the encrypted (not hashed) password of the systems.'
What is the severity of CVE-2018-6445?
The severity of CVE-2018-6445 is high with a severity value of 7.5.
Which software versions are affected by CVE-2018-6445?
Brocade Network Advisor versions before 14.0.3 and Netapp Brocade Network Advisor are affected by CVE-2018-6445.
How can an attacker exploit CVE-2018-6445?
An attacker can exploit CVE-2018-6445 by remotely accessing the Brocade Network Advisor System and extracting the user database, which includes encrypted passwords.