The Web application of Brocade Fabric OS before versions Brocade Fabric OS v9.0.1a and v8.2.3a contains debug statements that expose sensitive information to the program's standard output device. An attacker who has compromised the FOS system may utilize this weakness to capture sensitive information, such as user credentials.
References
Link | Resource |
---|---|
https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2021-1494 | Not Applicable Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: brocade
Published: 2022-03-18T17:59:09
Updated: 2022-03-18T17:59:09
Reserved: 2021-02-26T00:00:00
Link: CVE-2021-27789
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-03-18T18:15:11.520
Modified: 2022-03-28T18:23:54.600
Link: CVE-2021-27789
JSON object: View
Redhat Information
No data.
CWE