CVE-2023-3454: OS Command Injection
Published Apr 4, 2024
·Updated
Remote code execution (RCE) vulnerability in Brocade Fabric OS after v9.0 and before v9.2.0 could allow an attacker to execute arbitrary code and use this to gain root access to the Brocade switch.
Affected Software
2 affected components
Broadcom Fabric Operating System>=9.0.0<9.1.1d1
Brocade Fabric OS>9.0<=9.2.0
Event History
Apr 4, 2024
CVE Published
via MITRE·05:03 PM
Data Sourced
via MITRE·05:03 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-3454?
CVE-2023-3454 is classified as a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2023-3454?
To mitigate CVE-2023-3454, upgrade Brocade Fabric OS to version 9.2.0 or later.
3
What impact does CVE-2023-3454 have on affected systems?
CVE-2023-3454 allows an attacker to execute arbitrary code, potentially gaining root access to the Brocade switch.
4
What versions of Fabric OS are affected by CVE-2023-3454?
CVE-2023-3454 affects Brocade Fabric OS versions after 9.0 and before 9.2.0.
5
Who is affected by CVE-2023-3454?
Organizations using vulnerable versions of Brocade Fabric OS are at risk of CVE-2023-3454.