CVE-2020-15377: SSRF
Published Jun 9, 2021
·Updated
Webtools in Brocade SANnav before version 2.1.1 allows unauthenticated users to make requests to arbitrary hosts due to a misconfiguration; this is commonly referred to as Server-Side Request Forgery (SSRF).
Affected Software
1 affected component
Broadcom Sannav<2.1.1
Event History
Jun 9, 2021
CVE Published
via MITRE·03:15 PM
Data Sourced
via MITRE·03:15 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2020-15377.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Webtools in Brocade SANnav before version 2.1.1 allows unauthenticated users to make requests to arbitrary hosts'.
3
What is the severity of CVE-2020-15377?
The severity of CVE-2020-15377 is critical with a severity value of 9.8.
4
How does CVE-2020-15377 affect the Brocade SANnav software?
CVE-2020-15377 affects Brocade SANnav versions before 2.1.1 by allowing unauthenticated users to make requests to arbitrary hosts.
5
How can I fix CVE-2020-15377?
To fix CVE-2020-15377, you should update Brocade SANnav to version 2.1.1 or later.