A vulnerability in Brocade Fabric OS versions before 9.2.2 could allow man-in-the-middle attackers to conduct remote Service Session Hijacking that may arise from the attacker's ability to forge an SSH key while the Brocade Fabric OS Switch is performing various remote operations initiated by a switch admin.
Metrics
Affected Vendors & Products
References
History
Wed, 13 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Tue, 12 Nov 2024 19:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability in Brocade Fabric OS versions before 9.2.2 could allow man-in-the-middle attackers to conduct remote Service Session Hijacking that may arise from the attacker's ability to forge an SSH key while the Brocade Fabric OS Switch is performing various remote operations initiated by a switch admin. | |
Title | Brocade Fabric OS before 9.2.2 does not enforce strict host key checking | |
Weaknesses | CWE-322 | |
References |
| |
Metrics |
cvssV4_0
|
MITRE
Status: PUBLISHED
Assigner: brocade
Published: 2024-11-12T18:41:54.940Z
Updated: 2024-11-13T14:14:34.025Z
Reserved: 2024-08-05T22:49:44.217Z
Link: CVE-2024-7516
Vulnrichment
Updated: 2024-11-13T14:13:34.016Z
NVD
Status : Awaiting Analysis
Published: 2024-11-12T19:15:18.753
Modified: 2024-11-13T17:01:16.850
Link: CVE-2024-7516
Redhat
No data.