Skip to main content

Vendor archive

broadcom CVEs

Beta · best-effort

644 CVEs tagged to vendor broadcom131 Critical, 250 High, 242 Medium, 21 Low, 0 Unrated.

CVE-2025-58380

Published Feb 3, 2026

A vulnerability in Brocade Fabric OS before 9.2.1 could allow an authenticated attacker with admin privileges using the shell command “grep” to modify the path variables and move…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2026-0383

Published Feb 3, 2026

A vulnerability in Brocade Fabric OS could allow an authenticated, local attacker with privileges to access the Bash shell to access insecurely stored file contents including the…

CVSS 8.2 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-58383

Published Feb 3, 2026

A vulnerability in Brocade Fabric OS versions before 9.2.1c2 could allow an administrator-level user to execute the bind command, to escalate privileges and bypass security contro…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2025-58382

Published Feb 3, 2026

A vulnerability in the secure configuration of authentication and management services in Brocade Fabric OS before Fabric OS 9.2.1c2 could allow an authenticated, remote attacker…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-58379

Published Feb 3, 2026

Brocade Fabric OS before 9.2.1 has a vulnerability that could allow a local authenticated attacker to reveal command line passwords using commands that may expose higher privilege…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-12774

Published Feb 3, 2026

A vulnerability in the migration script for Brocade SANnav before 3.0 could allow the collection of database sql queries in the SANnav support save file. An attacker with access t…

CVSS 4.6 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-12773

Published Feb 3, 2026

A vulnerability in update-reports-purge-settings.sh script logging for Brocade SANnav before 2.4.0a could allow the collection of SANnav database password in the system audit logs…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-12772

Published Feb 2, 2026

Brocade SANnav before 2.4.0b logs the Brocade Fabric OS Switch admin password on the SANnav support save logs. When OOM occurs on a Brocade SANnav server, the call stack trace fo…

CVSS 8.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-12680

Published Feb 2, 2026

Brocade SANnav before Brocade SANnav 2.4.0b logs database passwords in clear text in the standby SANnav server, after disaster recovery failover. The vulnerability could allow a…

CVSS 6.0 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-12679

Published Feb 2, 2026

A vulnerability in Brocade SANnav before 2.4.0b prints the Password-Based Encryption (PBE) key in plaintext in the system audit log file. The vulnerability could allow a remote…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-51005

Published Sep 23, 2025

A heap-buffer-overflow vulnerability exists in the tcpliveplay utility of the tcpreplay-4.5.1. When a crafted pcap file is processed, the program incorrectly handles memory in the…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-51006

Published Sep 22, 2025

Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the dlt_linuxsll2_cleanup() function in plugins/dlt_linuxsll2/linuxsll2.c. This vulnerability is…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-9649

Published Aug 29, 2025

A security vulnerability has been detected in appneta tcpreplay 4.5.1. Impacted is the function calc_sleep_time of the file send_packets.c. Such manipulation leads to divide by ze…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-9386

Published Aug 24, 2025

A vulnerability has been found in appneta tcpreplay up to 4.5.1. The impacted element is the function get_l2len_protocol of the file get.c of the component tcprewrite. Such manipu…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-9385

Published Aug 24, 2025

A flaw has been found in appneta tcpreplay up to 4.5.1. The affected element is the function fix_ipv6_checksums of the file edit_packet.c of the component tcprewrite. This manipul…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort
Showing 26-50 of 644 CVEsPage 2 of 26