CVE-2023-31424

Brocade SANnav Web interface before Brocade SANnav v2.3.0 and v2.2.2a allows remote unauthenticated users to bypass web authentication and authorization.
Configurations

Configuration 1 (hide)

cpe:2.3:a:broadcom:brocade_sannav:*:*:*:*:*:*:*:*

History

13 Feb 2025, 17:16

Type Values Removed Values Added
Summary (en) Brocade SANnav Web interface before Brocade SANnav v2.3.0 and v2.2.2a allows remote unauthenticated users to bypass web authentication and authorization. (en) Brocade SANnav Web interface before Brocade SANnav v2.3.0 and v2.2.2a allows remote unauthenticated users to bypass web authentication and authorization.

21 Nov 2024, 08:01

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 9.8
v2 : unknown
v3 : 8.1
References () https://security.netapp.com/advisory/ntap-20240229-0004/ - () https://security.netapp.com/advisory/ntap-20240229-0004/ -
References () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/22507 - Vendor Advisory () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/22507 - Vendor Advisory

21 Mar 2024, 02:47

Type Values Removed Values Added
References
  • () https://security.netapp.com/advisory/ntap-20240229-0004/ -

05 Sep 2023, 19:18

Type Values Removed Values Added
References (MISC) https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/22507 - (MISC) https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/22507 - Vendor Advisory
CPE cpe:2.3:a:broadcom:brocade_sannav:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE NVD-CWE-Other
First Time Broadcom
Broadcom brocade Sannav

31 Aug 2023, 01:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-31 01:15

Updated : 2025-02-13 17:16


NVD link : CVE-2023-31424

Mitre link : CVE-2023-31424

CVE.ORG link : CVE-2023-31424


JSON object : View

Products Affected

broadcom

  • brocade_sannav
CWE
CWE-290

Authentication Bypass by Spoofing

NVD-CWE-Other