CVE Bulletin

CVE-2024-29969

Written by Mission Secure | Apr 19, 2024 6:14:00 PM

CVE-2024-29969 poses a threat to operational technology (OT) by defaulting to weak TLS/SSL message authentication code ciphers during upgrades of Brocade SANnav installations, potentially exposing critical infrastructure systems like storage area networks to security vulnerabilities, compromising data integrity and the reliability of industrial operations.

From the CVE database:

When a Brocade SANnav installation is upgraded from Brocade SANnav v2.2.2 to Brocade SANnav 2.3.0, TLS/SSL weak message authentication code ciphers are added by default for port 18082.

https://www.cve.org/CVERecord?id=CVE-2024-29969