First published: Tue Aug 15 2023(Updated: )
Broadcom RAID Controller web interface is vulnerable due to insecure defaults of lacking HTTP strict-transport-security policy
Credit: cret@cert.org cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom RAID Controller web interface | =51.12.0-2779 | |
=51.12.0-2779 |
This issue is fixed in 7.017.011.000. For more information please contact your Broadcom representative.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for the Broadcom RAID Controller web interface is CVE-2023-4342.
The severity of CVE-2023-4342 is critical with a value of 9.8.
CVE-2023-4342 exposes the Broadcom RAID Controller web interface to potential attacks due to insecure defaults of lacking HTTP strict-transport-security policy.
The version affected by CVE-2023-4342 is 51.12.0-2779.
For more information about CVE-2023-4342, you can visit the Broadcom Product Security Center.