CVE-2022-28165: High severity broadcom brocade sannav vulnerability
A vulnerability in the role-based access control (RBAC) functionality of the Brocade SANNav before 2.2.0 could allow an authenticated, remote attacker to access resources that they should not be able to access and perform actions that they should not be able to perform. The vulnerability exists because restrictions are not performed on Server side to ensure the user has required permission before processing requests.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-28165?
CVE-2022-28165 is a vulnerability in the role-based access control (RBAC) functionality of Brocade SANNav before version 2.2.0.
How does CVE-2022-28165 impact users?
CVE-2022-28165 allows an authenticated remote attacker to access resources and perform actions that they should not be able to.
What is the severity of CVE-2022-28165?
CVE-2022-28165 has a severity rating of 8.8 (high).
How can I fix CVE-2022-28165?
To fix CVE-2022-28165, update to Brocade SANNav version 2.2.0 or later.
Where can I find more information about CVE-2022-28165?
More information about CVE-2022-28165 can be found at the following link: [https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2022-1844](https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2022-1844)