CVE-2021-27792

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/08/2021
Last modified:
12/07/2022

Description

The request handling functions in web management interface of Brocade Fabric OS versions before v9.0.1a, v8.2.3a, and v7.4.2h do not properly handle malformed user input, resulting in a service crash. An authenticated attacker could use this weakness to cause the FOS HTTP application handler to crash, requiring a reboot.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* 7.4.2h (excluding)
cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* 8.0.0 (including) 8.2.3a (excluding)
cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* 9.0.0 (including) 9.0.1a (excluding)