CVE-2023-4329: Broadcom RAID Controller web interface is vulnerable due to insecure default of HTTP configuration that does not safeguard SESSIONID cookie with SameSite attribute
Broadcom RAID Controller web interface is vulnerable due to insecure default of HTTP configuration that does not safeguard SESSIONID cookie with SameSite attribute
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-4329?
CVE-2023-4329 is a vulnerability in Broadcom RAID Controller web interface due to an insecure default of HTTP configuration that does not safeguard the SESSIONID cookie with SameSite attribute.
How severe is CVE-2023-4329?
CVE-2023-4329 has a severity rating of 9.8 (Critical).
What software is affected by CVE-2023-4329?
Broadcom RAID Controller web interface version 51.12.0-2779 is affected by CVE-2023-4329.
How can I fix CVE-2023-4329?
To fix CVE-2023-4329, update the Broadcom RAID Controller web interface to a version that includes the safeguarding of the SESSIONID cookie with the SameSite attribute.
Where can I find more information about CVE-2023-4329?
More information about CVE-2023-4329 can be found at the Broadcom Product Security Center: [https://www.broadcom.com/support/resources/product-security-center](https://www.broadcom.com/support/resources/product-security-center)