CVE-2023-4342: Broadcom RAID Controller web interface is vulnerable due to insecure defaults of lacking HTTP strict-transport-security policy
Published Aug 15, 2023
·Updated
Broadcom RAID Controller web interface is vulnerable due to insecure defaults of lacking HTTP strict-transport-security policy
Affected Software
1 affected component
Broadcom RAID Controller web interface=51.12.0-2779
Remediation
Information
This issue is fixed in 7.017.011.000. For more information please contact your Broadcom representative.
Event History
Aug 15, 2023
CVE Published
via MITRE·06:25 PM
Data Sourced
via MITRE·06:25 PM
RemedyDescription
Data Sourced
via NVD·07:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for the Broadcom RAID Controller web interface?
The vulnerability ID for the Broadcom RAID Controller web interface is CVE-2023-4342.
2
What is the severity of CVE-2023-4342?
The severity of CVE-2023-4342 is critical with a value of 9.8.
3
How does CVE-2023-4342 affect the Broadcom RAID Controller web interface?
CVE-2023-4342 exposes the Broadcom RAID Controller web interface to potential attacks due to insecure defaults of lacking HTTP strict-transport-security policy.
4
Which version of Broadcom RAID Controller web interface is affected by CVE-2023-4342?
The version affected by CVE-2023-4342 is 51.12.0-2779.
5
Is there any additional information about CVE-2023-4342?
For more information about CVE-2023-4342, you can visit the Broadcom Product Security Center.