Vulnerabilities (CVE)

Filtered by vendor Broadcom Subscribe
Filtered by product Sannav
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-28163 1 Broadcom 1 Sannav 2022-05-13 7.5 HIGH 9.8 CRITICAL
In Brocade SANnav before Brocade SANnav 2.2.0, multiple endpoints associated with Zone management are susceptible to SQL injection, allowing an attacker to run arbitrary SQL commands.
CVE-2020-15377 1 Broadcom 1 Sannav 2021-06-11 7.5 HIGH 9.8 CRITICAL
Webtools in Brocade SANnav before version 2.1.1 allows unauthenticated users to make requests to arbitrary hosts due to a misconfiguration; this is commonly referred to as Server-Side Request Forgery (SSRF).