CVE-2020-15376: Broadcom Fabric Operating System
Medium severity, CVSS 4.3. EPSS: 0.9% chance of exploitation in the next 30 days.
Brocade Fabric OS versions before v9.0.0 and after version v8.1.0, configured in Virtual Fabric mode contain a weakness in the ldap implementation that could allow a remote ldap user to login in the Brocade Fibre Channel SAN switch with "user" privileges if it is not associated with any groups.
Affected products
- Broadcom Fabric Operating System: from 8.1.0, before 9.0.0 (fixed in 9.0.0)
Published 2020-12-11. Last modified 2026-06-17.