PT-2023-23317 · Brocade · Brocade Fabric Os
CVE-2023-31429
·
Publicado
2023-08-01
·
Atualizado
2024-09-18
CVSS v3.1
5.5
Média
| Vetor | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Brocade Fabric OS versions prior to 9.1.1c, 9.2.0
Description
The issue arises when using various commands such as
chassisdistribute, reboot, rasman, errmoduleshow, errfilterset, hassiscfgperrthreshold, supportshowcfgdisable, and supportshowcfgenable that can cause the content of shell interpreted variables to be printed in the terminal.Recommendations
For Brocade Fabric OS versions prior to 9.1.1c, 9.2.0, update to version 9.1.1c or 9.2.0 to resolve the issue.
As a temporary workaround, consider restricting the use of the vulnerable commands until a patch is available.
Correção
Generation of Error Message Containing Sensitive Information
Command Injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Brocade Fabric Os