Buffer Overflow Vulnerability in Broadcom Emulex HBA Manager and One Command Manager
CVE-2021-42774
9.8CRITICAL
What is CVE-2021-42774?
Broadcom's Emulex HBA Manager and One Command Manager are susceptible to a buffer overflow vulnerability in their remote firmware download feature. This weakness affects versions prior to 11.4.425.0 and 12.8.542.31 when not configured in Strictly Local Management mode. In non-secure mode, remote unauthenticated users could potentially exploit this vulnerability, leading to unauthorized access and various attacks. It is critical for users to ensure they operate within a secure configuration to mitigate this risk.