Vulnerability Description
Brocade SANnav OVA before v2.3.1 and v2.3.0a contain hard-coded credentials in the documentation that appear as the appliance's root password. The vulnerability could allow an unauthenticated attacker full access to the Brocade SANnav appliance.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Broadcom | Brocade Sannav | < 2.3.0a |
Related Weaknesses (CWE)
References
- https://support.broadcom.com/external/content/SecurityAdvisories/0/23255Vendor Advisory
- https://support.broadcom.com/external/content/SecurityAdvisories/0/23255Vendor Advisory
FAQ
What is CVE-2024-29966?
CVE-2024-29966 is a vulnerability with a CVSS score of 7.5 (HIGH). Brocade SANnav OVA before v2.3.1 and v2.3.0a contain hard-coded credentials in the documentation that appear as the appliance's root password. The vulnerability could allow an unauthenticated attacker...
How severe is CVE-2024-29966?
CVE-2024-29966 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-29966?
Check the references section above for vendor advisories and patch information. Affected products include: Broadcom Brocade Sannav.