Improper Certificate Validation in Brocade SANnav - CVE-2019-16209
Published: November 11, 2019
Brocade SANnav
Detailed vulnerability description
The vulnerability allows a remote attacker to perform a man-in-the-middle (MiTM) attack.
The vulnerability exists due to insufficient SSL certificate validation in the "ReportsTrustManager" class. A remote attacker can supply a specially crafted SSL certificate, and perform a man-in-the-middle attack on the target software.