CVE-2023-31424

CWE-2903 documents3 sources
Severity
9.8CRITICAL
EPSS
0.3%
top 48.26%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 31

Description

Brocade SANnav Web interface before Brocade SANnav v2.3.0 and v2.2.2a allows remote unauthenticated users to bypass web authentication and authorization.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 2.2 | Impact: 5.9

Affected Packages2 packages

CVEListV5brocade/sannavBrocade SANnav before Brocade SANnav v2.3.0 and v2.2.2a

🔴Vulnerability Details

2
GHSA
GHSA-7j4j-pg3j-97q6: Brocade SANnav Web interface before Brocade SANnav v22023-08-31
CVEList
Web authentication and authorization bypass2023-08-31
CVE-2023-31424 (CRITICAL CVSS 9.8) | Brocade SANnav Web interface before | cvebase.io