Critical severity9.8NVD Advisory· Published Nov 3, 2021· Updated Jun 17, 2026
CVE-2021-42772
CVE-2021-42772
Description
Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, have a buffer overflow vulnerability in the remote GetDumpFile command that could allow a user to attempt various attacks. In non-secure mode, the user is unauthenticated
Affected products
5cpe:2.3:a:broadcom:emulex_hba_manager:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:broadcom:emulex_hba_manager:*:*:*:*:*:*:*:*range: <11.4.425.0
- (no CPE)range: <11.4.425.0
cpe:2.3:a:broadcom:one_command_manager:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:broadcom:one_command_manager:*:*:*:*:*:*:*:*range: <12.8.542.31
- (no CPE)range: <12.8.542.31
- Broadcom Emulex/Emulex HBA Manager/One Command Managerdescription
Patches
Vulnerability mechanics
References
1- docs.broadcom.com/doc/elx_HBAManager-Lin-RN12811-101.pdfnvdExploitVendor Advisory
News mentions
0No linked articles in our index yet.