Lucene search

K
cveBrocadeCVE-2022-33179
HistoryOct 25, 2022 - 9:15 p.m.

CVE-2022-33179

2022-10-2521:15:46
brocade
web.nvd.nist.gov
42
3
cve-2022-33179
brocade
fabric os
vulnerability
cli
authenticated user
restricted shells
privilege escalation

CVSS3

8.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

AI Score

8.4

Confidence

High

EPSS

0

Percentile

5.1%

A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, and 7.4.2j could allow a local authenticated user to break out of restricted shells with “set context” and escalate privileges.

Affected configurations

Nvd
Node
broadcomfabric_operating_systemRange<7.4.2j
OR
broadcomfabric_operating_systemRange8.0.08.2.3c
OR
broadcomfabric_operating_systemRange9.0.09.0.1e
OR
broadcomfabric_operating_systemMatch9.1.0
VendorProductVersionCPE
broadcomfabric_operating_system*cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:*
broadcomfabric_operating_system9.1.0cpe:2.3:o:broadcom:fabric_operating_system:9.1.0:*:*:*:*:*:*:*

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Brocade Fabric OS",
    "versions": [
      {
        "version": "Brocade Fabric OS versions before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, and 7.4.2j",
        "status": "affected"
      }
    ]
  }
]

Social References

More

CVSS3

8.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

AI Score

8.4

Confidence

High

EPSS

0

Percentile

5.1%

Related for CVE-2022-33179