Show filters
561 Total Results
Displaying 131-140 of 561
Sort by:
Attacker Value
Unknown

CVE-2022-25626

Disclosure Date: December 16, 2022 (last updated October 08, 2023)
An unauthenticated user can access Identity Manager’s management console specific page URLs. However, the system doesn’t allow the user to carry out server side tasks without a valid web session.
Attacker Value
Unknown

CVE-2022-33187

Disclosure Date: December 09, 2022 (last updated February 24, 2025)
Brocade SANnav before v2.2.1 logs usernames and encoded passwords in debug-enabled logs. The vulnerability could allow an attacker with admin privilege to read sensitive information.
Attacker Value
Unknown

CVE-2022-37017

Disclosure Date: December 01, 2022 (last updated October 08, 2023)
Symantec Endpoint Protection (Windows) agent, prior to 14.3 RU6/14.3 RU5 Patch 1, may be susceptible to a Security Control Bypass vulnerability, which is a type of issue that can potentially allow a threat actor to circumvent existing security controls. This CVE applies narrowly to the Client User Interface Password protection and Policy Import/Export Password protection, if it has been enabled.
Attacker Value
Unknown

CVE-2022-37016

Disclosure Date: December 01, 2022 (last updated October 08, 2023)
Symantec Endpoint Protection (Windows) agent may be susceptible to a Privilege Escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user.
Attacker Value
Unknown

CVE-2022-33180

Disclosure Date: October 25, 2022 (last updated December 22, 2024)
A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5 could allow a local authenticated attacker to export out sensitive files with “seccryptocfg”, “configupload”.
Attacker Value
Unknown

CVE-2022-33182

Disclosure Date: October 25, 2022 (last updated December 22, 2024)
A privilege escalation vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5, could allow a local authenticated user to escalate its privilege to root using switch commands “supportlink”, “firmwaredownload”, “portcfgupload, license, and “fosexec”.
Attacker Value
Unknown

CVE-2022-33181

Disclosure Date: October 25, 2022 (last updated December 22, 2024)
An information disclosure vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5, 7.4.2.j could allow a local authenticated attacker to read sensitive files using switch commands “configshow” and “supportlink”.
Attacker Value
Unknown

CVE-2022-33183

Disclosure Date: October 25, 2022 (last updated February 24, 2025)
A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5, 7.4.2.j could allow a remote authenticated attacker to perform stack buffer overflow using in “firmwaredownload” and “diagshow” commands.
Attacker Value
Unknown

CVE-2022-33179

Disclosure Date: October 25, 2022 (last updated December 22, 2024)
A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, and 7.4.2j could allow a local authenticated user to break out of restricted shells with “set context” and escalate privileges.
Attacker Value
Unknown

CVE-2022-33184

Disclosure Date: October 25, 2022 (last updated February 24, 2025)
A vulnerability in fab_seg.c.h libraries of all Brocade Fabric OS versions before Brocade Fabric OS v9.1.1, v9.0.1e, v8.2.3c, v8.2.0_cbn5, 7.4.2j could allow local authenticated attackers to exploit stack-based buffer overflows and execute arbitrary code as the root user account.