Lucene search

K
broadcomBroadcom Security ResponseBSNSA24260
HistoryMay 08, 2024 - 12:00 a.m.

The Postgres implementation in Brocade SANnav versions before 2.3.0a is vulnerable to an incorrect local authentication flaw (CVE-2024-2860)

2024-05-0800:00:00
Broadcom Security Response
support.broadcom.com
4
brocade sannav
postgres
vulnerability
incorrect authentication
sensitive data
database
cve-2024-2860

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.1%

The Postgres implementation in Brocade SANnav versions before 2.3.0a is vulnerable to an incorrect local authentication flaw. An attacker with access to the VM where the Brocade SANnav is installed can gain access to sensitive data inside the Postgres
database.

Affected configurations

Vulners
Node
broadcombrocade_sannavRange<2.3.0a
CPENameOperatorVersion
brocade sannavlt2.3.0a

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.1%

Related for BSNSA24260