First published: Thu Aug 12 2021(Updated: )
A vulnerability in the authentication mechanism of Brocade Fabric OS versions before Brocade Fabric OS v.9.0.1a, v8.2.3a and v7.4.2h could allow a user to Login with empty password, and invalid password through telnet, ssh and REST.
Credit: sirt@brocade.com
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Fabric Operating System | <7.4.2h | |
Broadcom Fabric Operating System | >=8.0.0<8.2.3a | |
Broadcom Fabric Operating System | >=9.0.0<9.0.1a |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-27794 is a vulnerability in the authentication mechanism of Brocade Fabric OS versions before Brocade Fabric OS v.9.0.1a, v8.2.3a and v7.4.2h that could allow a user to login with an empty password or an invalid password through telnet, ssh, and REST.
CVE-2021-27794 has a severity rating of 7.8 (high).
Brocade Fabric OS versions before Brocade Fabric OS v.9.0.1a, v8.2.3a, and v7.4.2h are affected by CVE-2021-27794.
A user can exploit CVE-2021-27794 by attempting to log in with an empty password or an invalid password through telnet, ssh, or REST.
Yes, you can find more information about CVE-2021-27794 in the advisories published by NetApp and Broadcom.