PT-2023-23317 · Brocade · Brocade Fabric Os

CVE-2023-31429

·

Published

2023-08-01

·

Updated

2024-09-18

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Brocade Fabric OS versions prior to 9.1.1c, 9.2.0
Description The issue arises when using various commands such as chassisdistribute, reboot, rasman, errmoduleshow, errfilterset, hassiscfgperrthreshold, supportshowcfgdisable, and supportshowcfgenable that can cause the content of shell interpreted variables to be printed in the terminal.
Recommendations For Brocade Fabric OS versions prior to 9.1.1c, 9.2.0, update to version 9.1.1c or 9.2.0 to resolve the issue. As a temporary workaround, consider restricting the use of the vulnerable commands until a patch is available.

Fix

Generation of Error Message Containing Sensitive Information

Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-31429

Affected Products

Brocade Fabric Os