Home
HIGH: 8.5 CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:NDefault status
unaffected
before 9.2.1c2 and 9.2.2 through 9.2.2a
affected
Description
A vulnerability in the secure configuration of authentication and management services in Brocade Fabric OS before Fabric OS 9.2.1c2 could allow an authenticated, remote attacker with administrative credentials to execute arbitrary commands as root using “supportsave”, “seccertmgmt”, “configupload” command.
Problem types
CWE-305: Authentication Bypass by Primary Weakness
Product status
before 9.2.1c2 and 9.2.2 through 9.2.2a
References
support.broadcom.com/...l/content/SecurityAdvisories/0/36849