First published: Mon Feb 21 2022(Updated: )
A vulnerability in Brocade Fabric OS versions before Brocade Fabric OS v8.0.1b, v7.4.1d could allow an authenticated attacker within the restricted shell environment (rbash) as either the “user” or “factory” account, to read the contents of any file on the filesystem utilizing one of a few available binaries.
Credit: sirt@brocade.com
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Fabric Operating System | <7.4.1d | |
Broadcom Fabric Operating System | >=8.0.0<8.0.1b |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-27796.
The severity of CVE-2021-27796 is medium with a CVSS score of 6.5.
Brocade Fabric OS versions before Brocade Fabric OS v8.0.1b and v7.4.1d are affected by CVE-2021-27796.
An authenticated attacker within the restricted shell environment (rbash) as either the “user” or “factory” account can exploit CVE-2021-27796 to read the contents of any file on the filesystem.
Yes, a fix is available for CVE-2021-27796 in Brocade Fabric OS v8.0.1b and v7.4.1d.