Brocade Fabric OS versions starting with 9.1.0 have root access removed, however, a local user with admin privilege can potentially execute arbitrary code with full root privileges on Fabric OS versions 9.1.0 through 9.1.1d6.
References
| Link | Resource |
|---|---|
| https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/25602 | Vendor Advisory |
Configurations
History
29 Apr 2025, 19:49
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/25602 - Vendor Advisory | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.7 |
| CWE | CWE-78 | |
| First Time |
Broadcom fabric Operating System
Broadcom |
|
| CPE | cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* |
24 Apr 2025, 03:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-04-24 03:15
Updated : 2025-04-29 19:49
NVD link : CVE-2025-1976
Mitre link : CVE-2025-1976
JSON object : View
Products Affected
broadcom
- fabric_operating_system
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
