CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

CVE-2024-4282: Weak TLS Ciphers on Brocade SANnav OVA SSH port 22

8.2 CVSS

Description

Brocade SANnav OVA before SANnav 2.3.1b enables SHA1 deprecated setting for SSH for port 22.

Classification

CVE ID: CVE-2024-4282

CVSS Base Severity: HIGH

CVSS Base Score: 8.2

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

Affected Products

Vendor: Brocade

Product: Brocade SANnav

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.04% (probability of being exploited)

EPSS Percentile: 11.99% (scored less or equal to compared to others)

EPSS Date: 2025-03-15 (when was this score calculated)

References

https://support.broadcom.com/external/content/SecurityAdvisories/0/25400

Timeline