Brocade Fabric OS(FOS)是美国博科(Brocade)公司的一套使用在交换机和路由器等设备中的嵌入式操作系统。 Brocade Fabric OS存在安全漏洞,该漏洞源于多个命令存在安全漏洞,导致命令执行时会在终端中打印shell解释变量的内容。受影响的产品和版本: Brocade Fabric OS 9.1.1c之前版本,9.2.0之前版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-31425 | 7.8 HIGH | Privilege escalation via the fosexec command |
| CVE-2023-31427 | 7.8 HIGH | Knowledge of full path name |
| CVE-2023-31432 | 7.8 HIGH | Privilege issues in multiple commands |
| CVE-2023-31426 | 6.8 MEDIUM | scp, sftp, ftp servers passwords in supportsave |
| CVE-2023-31928 | 6.3 MEDIUM | XSS vulnerability in Brocade Webtools |
| CVE-2023-31431 | 5.5 MEDIUM | A buffer overflow vulnerability in “diagstatus” command |
| CVE-2023-31430 | 5.5 MEDIUM | buffer overflow vulnerability in “secpolicydelete” command |
| CVE-2023-31428 | 5.5 MEDIUM | CLI allows upload or transfer files of dangerous types |
No comments yet