CVE-2021-27796: Medium severity broadcom fabric operating system vulnerability
A vulnerability in Brocade Fabric OS versions before Brocade Fabric OS v8.0.1b, v7.4.1d could allow an authenticated attacker within the restricted shell environment (rbash) as either the “user” or “factory” account, to read the contents of any file on the filesystem utilizing one of a few available binaries.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-27796.
What is the severity of CVE-2021-27796?
The severity of CVE-2021-27796 is medium with a CVSS score of 6.5.
Which versions of Brocade Fabric OS are affected by CVE-2021-27796?
Brocade Fabric OS versions before Brocade Fabric OS v8.0.1b and v7.4.1d are affected by CVE-2021-27796.
How can an attacker exploit CVE-2021-27796?
An authenticated attacker within the restricted shell environment (rbash) as either the “user” or “factory” account can exploit CVE-2021-27796 to read the contents of any file on the filesystem.
Is there a fix available for CVE-2021-27796?
Yes, a fix is available for CVE-2021-27796 in Brocade Fabric OS v8.0.1b and v7.4.1d.