CVE-2024-2860

The PostgreSQL implementation in Brocade SANnav versions before 2.3.0a is vulnerable to an incorrect local authentication flaw. An attacker accessing the VM where the Brocade SANnav is installed can gain access to sensitive data inside the PostgreSQL database.
Configurations

No configuration.

History

21 Nov 2024, 09:10

Type Values Removed Values Added
References () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24260 - () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24260 -

08 May 2024, 13:15

Type Values Removed Values Added
Summary
  • (es) La implementación de PostgreSQL en las versiones de Brocade SANnav anteriores a la 2.3.0a es vulnerable a una falla de autenticación local incorrecta. Un atacante que acceda a la máquina virtual donde está instalado Brocade SANnav puede obtener acceso a datos confidenciales dentro de la base de datos PostgreSQL.

08 May 2024, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-08 02:15

Updated : 2024-11-21 09:10


NVD link : CVE-2024-2860

Mitre link : CVE-2024-2860

CVE.ORG link : CVE-2024-2860


JSON object : View

Products Affected

No product.

CWE
CWE-306

Missing Authentication for Critical Function