CVE-2016-8206
UnknownEPSS 14.54%
Last modified
CVE-2016-8206 is a vulnerability of currently unknown severity. A Directory Traversal vulnerability in servlet SoftwareImageUpload in the Brocade Network Advisor versions released prior to and including 14.0.2 could allow remote attackers to write to arbitrary files, and consequently delete the files.. EPSS estimates a 14.54% chance of exploitation in the next 30 days.
Description
A Directory Traversal vulnerability in servlet SoftwareImageUpload in the Brocade Network Advisor versions released prior to and including 14.0.2 could allow remote attackers to write to arbitrary files, and consequently delete the files.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Brocade | Network Advisor | <= 14.0.2 |
References
- http://www.securityfocus.com/bid/95692Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/95692Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2016-8206?
A Directory Traversal vulnerability in servlet SoftwareImageUpload in the Brocade Network Advisor versions released prior to and including 14.0.2 could allow remote attackers to write to arbitrary files, and consequently delete the files.
How severe is CVE-2016-8206?
Severity scoring for CVE-2016-8206 is pending analysis. The EPSS model estimates a 14.54% probability of exploitation in the next 30 days.
How do I fix CVE-2016-8206?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2016
- CVE-2016-8200Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2016-8201A CSRF vulnerability in Brocade Virtual Traffic Manager vers…
- CVE-2016-8202A privilege escalation vulnerability in Brocade Fibre Channe…
- CVE-2016-8203A memory corruption in the IPsec code path of Brocade NetIro…
- CVE-2016-8204A Directory Traversal vulnerability in FileReceiveServlet in…9.8
- CVE-2016-8205A Directory Traversal vulnerability in DashboardFileReceiveS…
- CVE-2016-8207A Directory Traversal vulnerability in CliMonitorReportServl…
- CVE-2016-8209Improper checks for unusual or exceptional conditions in Bro…
- CVE-2016-8211EMC Data Protection Advisor 6.1.x, EMC Data Protection Advis…7.5
- CVE-2016-8212An issue was discovered in EMC RSA BSAFE Crypto-J versions p…7.5
- CVE-2016-8213EMC Documentum WebTop Version 6.8, prior to P18 and Version …
- CVE-2016-8214EMC Avamar Data Store (ADS) and Avamar Virtual Edition (AVE)…
Are you affected by CVE-2016-8206?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
