CVE-2023-31432

Through manipulation of passwords or other variables, using commands such as portcfgupload, configupload, license, myid, a non-privileged user could obtain root privileges in Brocade Fabric OS versions before Brocade Fabric OS v9.1.1c and v9.2.0.
Configurations

Configuration 1 (hide)

cpe:2.3:o:broadcom:brocade_fabric_operating_system:*:*:*:*:*:*:*:*

History

13 Feb 2025, 17:16

Type Values Removed Values Added
Summary Through manipulation of passwords or other variables, using commands such as portcfgupload, configupload, license, myid, a non-privileged user could obtain root privileges in Brocade Fabric OS versions before Brocade Fabric OS v9.1.1c and v9.2.0. Through manipulation of passwords or other variables, using commands such as portcfgupload, configupload, license, myid, a non-privileged user could obtain root privileges in Brocade Fabric OS versions before Brocade Fabric OS v9.1.1c and v9.2.0.
References (MISC) https://support.broadcom.com/external/content/SecurityAdvisories/0/22385 - Vendor Advisory () https://support.broadcom.com/external/content/SecurityAdvisories/0/22385 - Vendor Advisory
References (MISC) https://security.netapp.com/advisory/ntap-20230908-0007/ - Third Party Advisory () https://security.netapp.com/advisory/ntap-20230908-0007/ - Third Party Advisory

16 Feb 2024, 17:37

Type Values Removed Values Added
CPE cpe:2.3:o:broadcom:brocade_fabric_operating_system:9.2.0:*:*:*:*:*:*:*
References
  • (MISC) https://security.netapp.com/advisory/ntap-20230908-0007/ - Third Party Advisory

08 Aug 2023, 18:37

Type Values Removed Values Added
References (MISC) https://support.broadcom.com/external/content/SecurityAdvisories/0/22385 - (MISC) https://support.broadcom.com/external/content/SecurityAdvisories/0/22385 - Vendor Advisory
First Time Broadcom
Broadcom brocade Fabric Operating System
CWE CWE-269
CPE cpe:2.3:o:broadcom:brocade_fabric_operating_system:9.2.0:*:*:*:*:*:*:*
cpe:2.3:o:broadcom:brocade_fabric_operating_system:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

02 Aug 2023, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-02 00:15

Updated : 2025-02-13 17:16


NVD link : CVE-2023-31432

Mitre link : CVE-2023-31432


JSON object : View

Products Affected

broadcom

  • brocade_fabric_operating_system
CWE
CWE-269

Improper Privilege Management