CVE-2021-27792
12.08.2021, 15:15
The request handling functions in web management interface of Brocade Fabric OS versions before v9.0.1a, v8.2.3a, and v7.4.2h do not properly handle malformed user input, resulting in a service crash. An authenticated attacker could use this weakness to cause the FOS HTTP application handler to crash, requiring a reboot.Enginsight
Vendor | Product | Version |
---|---|---|
broadcom | fabric_operating_system | 𝑥 < 7.4.2h |
broadcom | fabric_operating_system | 8.0.0 ≤ 𝑥 < 8.2.3a |
broadcom | fabric_operating_system | 9.0.0 ≤ 𝑥 < 9.0.1a |
𝑥
= Vulnerable software versions
References