CVE-2024-29967

In Brocade SANnav before Brocade SANnav v2.31 and v2.3.0a, it was observed that Docker instances inside the appliance have insecure mount points, allowing reading and writing access to sensitive files. The vulnerability could allow a sudo privileged user on the host OS to read and write access to these files.
Configurations

Configuration 1 (hide)

cpe:2.3:a:broadcom:brocade_sannav:*:*:*:*:*:*:*:*

History

04 Feb 2025, 15:43

Type Values Removed Values Added
References () https://support.broadcom.com/external/content/SecurityAdvisories/0/23254 - () https://support.broadcom.com/external/content/SecurityAdvisories/0/23254 - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.0
First Time Broadcom
Broadcom brocade Sannav
CWE CWE-276
CPE cpe:2.3:a:broadcom:brocade_sannav:*:*:*:*:*:*:*:*

19 Apr 2024, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-19 05:15

Updated : 2025-02-04 15:43


NVD link : CVE-2024-29967

Mitre link : CVE-2024-29967


JSON object : View

Products Affected

broadcom

  • brocade_sannav
CWE
CWE-276

Incorrect Default Permissions