Lucene search

K
broadcomBroadcom Security ResponseBSNSA22379
HistoryAug 01, 2023 - 12:00 a.m.

CVE-2023-31427 - Knowledge of full path name

2023-08-0100:00:00
Broadcom Security Response
support.broadcom.com
11
brocade fabric os
full path name
vulnerability
command execution
privilege escalation

AI Score

7.9

Confidence

High

EPSS

0

Percentile

9.9%

Brocade Fabric OS versions before Brocade Fabric OS v9.1.1c, and v9.2.0 Could allow an authenticated, local user with knowledge of full path names inside Brocade Fabric OS to execute any command regardless of assigned privilege. Starting with Fabric OS v9.1.0, β€œroot” account access is disabled.

Affected configurations

Vulners
Node
broadcombrocade_fabric_operating_systemRange<9.1.1c
OR
broadcombrocade_fabric_operating_systemRange<9.2.0
VendorProductVersionCPE
broadcombrocade_fabric_operating_system*cpe:2.3:o:broadcom:brocade_fabric_operating_system:*:*:*:*:*:*:*:*

AI Score

7.9

Confidence

High

EPSS

0

Percentile

9.9%

Related for BSNSA22379