CyberRota Analysis
AI-GeneratedThe Brocade SANnav orchestrator is vulnerable to unauthenticated remote command injection, enabling network-adjacent attackers to execute arbitrary administrative commands and manipulate container management instructions. This could lead to unauthorized alterations of Fibre Channel fabric switch configurations and compromise application container runtimes. Organizations using Brocade SANnav versions prior to 3.0.1a should prioritize immediate remediation to mitigate potential impacts on their network infrastructure.
Original NVD Description
Unauthenticated remote command injection in the Brocade SANnav orchestrator HTTP service permits network-adjacent attackers to execute arbitrary administrative switch CLI commands and issue container management instructions. This could allow an attacker to alter Fibre Channel fabric switch configurations or manipulate application container runtimes. This vulnerability affects Brocade SANnav versions before 3.0.1a.