CVE-2024-29950: Broadcom Brocade Sannav
Medium severity, CVSS 5.9. EPSS: 0.3% chance of exploitation in the next 30 days.
The class FileTransfer implemented in Brocade SANnav before v2.3.1, v2.3.0a, uses the ssh-rsa signature scheme, which has a SHA-1 hash. The vulnerability could allow a remote, unauthenticated attacker to perform a man-in-the-middle attack.
Affected products
- Broadcom Brocade Sannav: before 2.3.0a (fixed in 2.3.0a)
Published 2024-04-17. Last modified 2026-06-17.