Vulnerability Description
The class FileTransfer implemented in Brocade SANnav before v2.3.1, v2.3.0a, uses the ssh-rsa signature scheme, which has a SHA-1 hash. The vulnerability could allow a remote, unauthenticated attacker to perform a man-in-the-middle attack.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Broadcom | Brocade Sannav | < 2.3.0a |
Related Weaknesses (CWE)
References
- https://support.broadcom.com/external/content/SecurityAdvisories/0/23236Vendor Advisory
- https://support.broadcom.com/external/content/SecurityAdvisories/0/23236Vendor Advisory
FAQ
What is CVE-2024-29950?
CVE-2024-29950 is a vulnerability with a CVSS score of 7.5 (HIGH). The class FileTransfer implemented in Brocade SANnav before v2.3.1, v2.3.0a, uses the ssh-rsa signature scheme, which has a SHA-1 hash. The vulnerability could allow a remote, unauthenticated attacker...
How severe is CVE-2024-29950?
CVE-2024-29950 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-29950?
Check the references section above for vendor advisories and patch information. Affected products include: Broadcom Brocade Sannav.