Brocade Fabric OS Versions before v8.2.2a and v8.2.1d could expose the credentials of the remote ESRS server when these credentials are given as a command line option when configuring the ESRS client.
The product writes sensitive information to a log file.
Link | Tags |
---|---|
https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2020-906 | vendor advisory |
https://security.netapp.com/advisory/ntap-20200511-0008/ | third party advisory |