First published: Fri Sep 25 2020(Updated: )
Host Header Injection vulnerability in the http management interface in Brocade Fabric OS versions before v9.0.0 could allow a remote attacker to exploit this vulnerability by injecting arbitrary HTTP headers
Credit: sirt@brocade.com
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Fabric Operating System | <9.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-6449 is a vulnerability in the http management interface in Brocade Fabric OS versions before v9.0.0 that allows a remote attacker to inject arbitrary HTTP headers.
The Host Header Injection vulnerability in Brocade Fabric OS versions before v9.0.0 occurs when a remote attacker is able to inject arbitrary HTTP headers into the http management interface.
CVE-2018-6449 has a severity rating of 6.1, which is considered medium.
A remote attacker can exploit CVE-2018-6449 by injecting arbitrary HTTP headers into the http management interface.
To mitigate the Host Header Injection vulnerability in Brocade Fabric OS, update to version 9.0.0 or later.