Brocade Fabric OS(FOS)是美国博科(Brocade)公司的一套使用在交换机和路由器等设备中的嵌入式操作系统。 Brocade Fabric OS存在安全漏洞,该漏洞源于configupload/download会打印ftp等服务器的密码,从而导致信息泄露。受影响的产品和版本: Brocade Fabric OS 9.1.1c版本,8.2.3d版本,9.2.0版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Brocade | Brocade Fabric OS | before Brocade Fabric OS v9.1.1c, v8.2.3d, v9.2.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-31425 | 7.8 HIGH | Privilege escalation via the fosexec command |
| CVE-2023-31427 | 7.8 HIGH | Knowledge of full path name |
| CVE-2023-31432 | 7.8 HIGH | Privilege issues in multiple commands |
| CVE-2023-31928 | 6.3 MEDIUM | XSS vulnerability in Brocade Webtools |
| CVE-2023-31429 | 5.5 MEDIUM | Multiple commands print sensitive information in the terminal |
| CVE-2023-31431 | 5.5 MEDIUM | A buffer overflow vulnerability in “diagstatus” command |
| CVE-2023-31430 | 5.5 MEDIUM | buffer overflow vulnerability in “secpolicydelete” command |
| CVE-2023-31428 | 5.5 MEDIUM | CLI allows upload or transfer files of dangerous types |
No comments yet