Brocade Fabric OS(FOS)是美国博科(Brocade)公司的一套使用在交换机和路由器等设备中的嵌入式操作系统。 Brocade Fabric OS存在安全漏洞,该漏洞源于允许非特权用户通过使用portcfgupload等命令获得root权限。受影响的产品和版本: Brocade Fabric OS 9.1.1c之前版本,9.2.0之前版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-31425 | 7.8 HIGH | Privilege escalation via the fosexec command |
| CVE-2023-31427 | 7.8 HIGH | Knowledge of full path name |
| CVE-2023-31426 | 6.8 MEDIUM | scp, sftp, ftp servers passwords in supportsave |
| CVE-2023-31928 | 6.3 MEDIUM | XSS vulnerability in Brocade Webtools |
| CVE-2023-31429 | 5.5 MEDIUM | Multiple commands print sensitive information in the terminal |
| CVE-2023-31431 | 5.5 MEDIUM | A buffer overflow vulnerability in “diagstatus” command |
| CVE-2023-31430 | 5.5 MEDIUM | buffer overflow vulnerability in “secpolicydelete” command |
| CVE-2023-31428 | 5.5 MEDIUM | CLI allows upload or transfer files of dangerous types |
No comments yet