Brocade SANnav OVA before v2.3.1 and v2.3.0a contain hard-coded credentials in the documentation that appear as the appliance's root password. The vulnerability could allow an unauthenticated attacker full access to the Brocade SANnav appliance.
The product contains hard-coded credentials, such as a password or cryptographic key.
Link | Tags |
---|---|
https://support.broadcom.com/external/content/SecurityAdvisories/0/23255 | vendor advisory |