Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Brocade SANnav contains hardcoded TLS keys used by Docker
Vulnerability Description
Brocade SANnav OVA before v2.3.1, and v2.3.0a, contain hardcoded TLS keys used by Docker. Note: Brocade SANnav doesn't have access to remote Docker registries.
CVSS Information
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
使用硬编码的凭证
Vulnerability Title
Broadcom Brocade SANnav 安全漏洞
Vulnerability Description
Broadcom Brocade SANnav是美国博通(Broadcom)公司的一套SAN管理平台。 Brocade SANnav v2.3.1 版本和 v2.3.0a 版本存在安全漏洞,该漏洞源于包含 Docker 用于通过 TLS 访问远程注册表的硬编码密钥。具有暴露密钥的 TLS 连接允许攻击者对流量进行中间人攻击。
CVSS Information
N/A
Vulnerability Type
N/A