PT-2020-9799 · Brocade · Brocade Sannav
Published
2020-09-25
·
Updated
2020-10-06
·
CVE-2019-16212
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Brocade SANnav versions prior to 2.1.0
Description
A remote authenticated attacker could conduct an LDAP injection, potentially allowing them to bypass the authentication process.
Recommendations
For versions prior to 2.1.0, update to version 2.1.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the LDAP functionality until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Brocade Sannav