CVE-2020-15382: High severity broadcom sannav ova vulnerability
Published Jun 9, 2021
·Updated
Brocade SANnav before version 2.1.1 uses a hard-coded administrator account with the weak password ‘passw0rd’ if a password is not provided for PostgreSQL at install-time.
Affected Software
1 affected component
Broadcom Brocade Sannav<2.1.1
Event History
Jun 9, 2021
CVE Published
via MITRE·02:32 PM
Data Sourced
via MITRE·02:32 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2020-15382?
CVE-2020-15382 is a vulnerability in Brocade SANnav, versions up to 2.1.1, that allows an attacker to log in using a hard-coded administrator account with a weak password.
2
How severe is CVE-2020-15382?
CVE-2020-15382 has a severity score of 7.2 (high).
3
What software versions are affected by CVE-2020-15382?
Brocade SANnav versions up to 2.1.1 are affected by CVE-2020-15382.
4
How can I fix CVE-2020-15382?
To fix CVE-2020-15382, upgrade to Brocade SANnav version 2.1.1 or later.
5
Where can I get more information about CVE-2020-15382?
You can find more information about CVE-2020-15382 in the Brocade Security Advisory available at: https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2021-1484