CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.4. Exploitation may require the attacker to be authenticated.
CVE
CVE-2021-27791
Severity
MEDIUM
CVSS
5.4
EPSS
0.60%
Original NVD Description
The function that is used to parse the Authentication header in Brocade Fabric OS Web application service before Brocade Fabric OS v9.0.1a and v8.2.3a fails to properly process a malformed authentication header from the client, resulting in reading memory addresses outside the intended range. An unauthenticated attacker could discover a request, which could bypass the authentication process.
Related CVEs
Other vulnerabilities affecting the same vendor(s)