Lucene search

K
broadcomBroadcom Security ResponseBSA-2022-1837
HistoryMay 03, 2022 - 12:00 a.m.

BSA-2022-1837

2022-05-0300:00:00
Broadcom Security Response
support.broadcom.com
11
h2
security advisory
permissions
symlink
sensitive files
brocade sannav

AI Score

6.4

Confidence

High

EPSS

0.017

Percentile

88.0%

Security Advisory ID : BSA-2022-1837

Component : H2

Revision : 1.0

**

An issue was discovered in H2 1.4.197. Insecure handling of permissions in the backup function allows attackers to read sensitive files (outside of their permissions) via a symlink to a fake database file.

Affected Products.

Brocade SANnav - Fixed in Brocade SANnav 2.2.0