First published: Tue Aug 01 2023(Updated: )
Through manipulation of passwords or other variables, using commands such as portcfgupload, configupload, license, myid, a non-privileged user could obtain root privileges in Brocade Fabric OS versions before Brocade Fabric OS v9.1.1c and v9.2.0.
Credit: sirt@brocade.com
Affected Software | Affected Version | How to fix |
---|---|---|
Brocade Fabric OS | <9.1.1c | |
Brocade Fabric OS | =9.2.0 | |
<9.1.1c |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-31432 is high with a score of 7.8.
Brocade Fabric OS versions before v9.1.1c and v9.2.0 are affected by CVE-2023-31432.
A non-privileged user can obtain root privileges in Brocade Fabric OS by manipulating passwords or other variables using commands such as portcfgupload, configupload, license, myid.
To fix CVE-2023-31432, upgrade to Brocade Fabric OS v9.1.1c or v9.2.0 or a higher version.
You can find more information about CVE-2023-31432 at the following references: https://support.broadcom.com/external/content/SecurityAdvisories/0/22385, https://security.netapp.com/advisory/ntap-20230908-0007/