Show filters
561 Total Results
Displaying 191-200 of 561
Sort by:
Attacker Value
Unknown
CVE-2021-42775
Disclosure Date: November 12, 2021 (last updated October 07, 2023)
Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, have a vulnerability in the remote firmware download feature that could allow a user to place or replace an arbitrary file on the remote host. In non-secure mode, the user is unauthenticated.
0
Attacker Value
Unknown
CVE-2021-42774
Disclosure Date: November 12, 2021 (last updated February 23, 2025)
Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, have a buffer overflow vulnerability in the remote firmware download feature that could allow remote unauthenticated users to perform various attacks. In non-secure mode, the user is unauthenticated.
0
Attacker Value
Unknown
CVE-2021-42772
Disclosure Date: November 03, 2021 (last updated February 23, 2025)
Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, have a buffer overflow vulnerability in the remote GetDumpFile command that could allow a user to attempt various attacks. In non-secure mode, the user is unauthenticated
0
Attacker Value
Unknown
CVE-2020-23273
Disclosure Date: September 22, 2021 (last updated February 23, 2025)
Heap-buffer overflow in the randomize_iparp function in edit_packet.c. of Tcpreplay v4.3.2 allows attackers to cause a denial of service (DOS) via a crafted pcap.
0
Attacker Value
Unknown
CVE-2021-36160
Disclosure Date: September 16, 2021 (last updated February 23, 2025)
A carefully crafted request uri-path can cause mod_proxy_uwsgi to read above the allocated memory and crash (DoS). This issue affects Apache HTTP Server versions 2.4.30 to 2.4.48 (inclusive).
0
Attacker Value
Unknown
CVE-2020-18976
Disclosure Date: August 25, 2021 (last updated February 23, 2025)
Buffer Overflow in Tcpreplay v4.3.2 allows attackers to cause a Denial of Service via the 'do_checksum' function in 'checksum.c'. It can be triggered by sending a crafted pcap file to the 'tcpreplay-edit' binary. This issue is different than CVE-2019-8381.
0
Attacker Value
Unknown
CVE-2021-27792
Disclosure Date: August 12, 2021 (last updated November 28, 2024)
The request handling functions in web management interface of Brocade Fabric OS versions before v9.0.1a, v8.2.3a, and v7.4.2h do not properly handle malformed user input, resulting in a service crash. An authenticated attacker could use this weakness to cause the FOS HTTP application handler to crash, requiring a reboot.
0
Attacker Value
Unknown
CVE-2021-27793
Disclosure Date: August 12, 2021 (last updated February 23, 2025)
ntermittent authorization failure in aaa tacacs+ with Brocade Fabric OS versions before Brocade Fabric OS v9.0.1b and after 9.0.0, also in Brocade Fabric OS before Brocade Fabric OS v8.2.3a and after v8.2.0 could cause a user with a valid account to be unable to log into the switch.
0
Attacker Value
Unknown
CVE-2021-27790
Disclosure Date: August 12, 2021 (last updated February 23, 2025)
The command ipfilter in Brocade Fabric OS before Brocade Fabric OS v.9.0.1a, v8.2.3, and v8.2.0_CBN4, and v7.4.2h uses unsafe string function to process user input. Authenticated attackers can abuse this vulnerability to exploit stack-based buffer overflows, allowing execution of arbitrary code as the root user account.
0
Attacker Value
Unknown
CVE-2021-27791
Disclosure Date: August 12, 2021 (last updated February 23, 2025)
The function that is used to parse the Authentication header in Brocade Fabric OS Web application service before Brocade Fabric OS v9.0.1a and v8.2.3a fails to properly process a malformed authentication header from the client, resulting in reading memory addresses outside the intended range. An unauthenticated attacker could discover a request, which could bypass the authentication process.
0