// For flags

CVE-2021-27795

License forgery in Brocade Fabric OS (FOS) hardware platforms running any version of Brocade Fabric OS software,

Severity Score

8.1
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Brocade Fabric OS (FOS) hardware
platforms running any version of Brocade Fabric OS software, which
supports the license string format; contain cryptographic
issues that could allow for the installation of forged or fraudulent
license keys. This would allow attackers or a malicious party to forge a
counterfeit license key that the Brocade Fabric OS platform would
authenticate and activate as if it were a legitimate license key.

Plataformas de hardware Brocade Fabric OS (FOS) que ejecutan cualquier versión del software Brocade Fabric OS, que admita el formato de cadena de licencia; contienen problemas criptográficos que podrían permitir la instalación de claves de licencia falsificadas o fraudulentas. Esto permitiría a los atacantes o a una parte malintencionada falsificar una clave de licencia falsa que la plataforma Brocade Fabric OS autenticaría y activaría como si fuera una clave de licencia legítima.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
Low
Integrity
Low
Availability
High
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2021-02-26 CVE Reserved
  • 2023-12-06 CVE Published
  • 2023-12-12 EPSS Updated
  • 2024-08-03 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-327: Use of a Broken or Risky Cryptographic Algorithm
CAPEC
  • CAPEC-20: Encryption Brute Forcing
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Broadcom
Search vendor "Broadcom"
Fabric Operating System
Search vendor "Broadcom" for product "Fabric Operating System"
*-
Affected
in Broadcom
Search vendor "Broadcom"
Brocade 300
Search vendor "Broadcom" for product "Brocade 300"
--
Safe
Broadcom
Search vendor "Broadcom"
Fabric Operating System
Search vendor "Broadcom" for product "Fabric Operating System"
*-
Affected
in Broadcom
Search vendor "Broadcom"
Brocade 610
Search vendor "Broadcom" for product "Brocade 610"
--
Safe
Broadcom
Search vendor "Broadcom"
Fabric Operating System
Search vendor "Broadcom" for product "Fabric Operating System"
*-
Affected
in Broadcom
Search vendor "Broadcom"
Brocade 6505
Search vendor "Broadcom" for product "Brocade 6505"
--
Safe
Broadcom
Search vendor "Broadcom"
Fabric Operating System
Search vendor "Broadcom" for product "Fabric Operating System"
*-
Affected
in Broadcom
Search vendor "Broadcom"
Brocade 6510
Search vendor "Broadcom" for product "Brocade 6510"
--
Safe
Broadcom
Search vendor "Broadcom"
Fabric Operating System
Search vendor "Broadcom" for product "Fabric Operating System"
*-
Affected
in Broadcom
Search vendor "Broadcom"
Brocade 6520
Search vendor "Broadcom" for product "Brocade 6520"
--
Safe
Broadcom
Search vendor "Broadcom"
Fabric Operating System
Search vendor "Broadcom" for product "Fabric Operating System"
*-
Affected
in Broadcom
Search vendor "Broadcom"
Brocade 7800
Search vendor "Broadcom" for product "Brocade 7800"
--
Safe
Broadcom
Search vendor "Broadcom"
Fabric Operating System
Search vendor "Broadcom" for product "Fabric Operating System"
*-
Affected
in Broadcom
Search vendor "Broadcom"
Brocade 7810
Search vendor "Broadcom" for product "Brocade 7810"
--
Safe
Broadcom
Search vendor "Broadcom"
Fabric Operating System
Search vendor "Broadcom" for product "Fabric Operating System"
*-
Affected
in Broadcom
Search vendor "Broadcom"
Brocade 7840
Search vendor "Broadcom" for product "Brocade 7840"
--
Safe
Broadcom
Search vendor "Broadcom"
Fabric Operating System
Search vendor "Broadcom" for product "Fabric Operating System"
*-
Affected
in Broadcom
Search vendor "Broadcom"
Brocade G620
Search vendor "Broadcom" for product "Brocade G620"
--
Safe
Broadcom
Search vendor "Broadcom"
Fabric Operating System
Search vendor "Broadcom" for product "Fabric Operating System"
*-
Affected
in Broadcom
Search vendor "Broadcom"
Brocade G630
Search vendor "Broadcom" for product "Brocade G630"
--
Safe
Broadcom
Search vendor "Broadcom"
Fabric Operating System
Search vendor "Broadcom" for product "Fabric Operating System"
*-
Affected
in Broadcom
Search vendor "Broadcom"
Brocade X6-4 Director
Search vendor "Broadcom" for product "Brocade X6-4 Director"
--
Safe
Broadcom
Search vendor "Broadcom"
Fabric Operating System
Search vendor "Broadcom" for product "Fabric Operating System"
*-
Affected
in Broadcom
Search vendor "Broadcom"
Brocade X6-8 Director
Search vendor "Broadcom" for product "Brocade X6-8 Director"
--
Safe