Description
Brocade Fabric OS versions before Brocade Fabric OS v9.1.1c, and v9.2.0 Could allow an authenticated, local user with knowledge of full path names inside Brocade Fabric OS to execute any command regardless of assigned privilege. Starting with Fabric OS v9.1.0, “root” account access is disabled.
Published: 2023-08-01
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-35735 Brocade Fabric OS versions before Brocade Fabric OS v9.1.1c, and v9.2.0 Could allow an authenticated, local user with knowledge of full path names inside Brocade Fabric OS to execute any command regardless of assigned privilege. Starting with Fabric OS v9.1.0, “root” account access is disabled.
History

Sat, 12 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00047}

epss

{'score': 0.00062}


Thu, 13 Feb 2025 17:00:00 +0000

Type Values Removed Values Added
Description Brocade Fabric OS versions before Brocade Fabric OS v9.1.1c, and v9.2.0 Could allow an authenticated, local user with knowledge of full path names inside Brocade Fabric OS to execute any command regardless of assigned privilege. Starting with Fabric OS v9.1.0, “root” account access is disabled. Brocade Fabric OS versions before Brocade Fabric OS v9.1.1c, and v9.2.0 Could allow an authenticated, local user with knowledge of full path names inside Brocade Fabric OS to execute any command regardless of assigned privilege. Starting with Fabric OS v9.1.0, “root” account access is disabled.

Subscriptions

Broadcom Fabric Operating System
cve-icon MITRE

Status: PUBLISHED

Assigner: brocade

Published:

Updated: 2025-02-13T16:50:10.000Z

Reserved: 2023-04-28T00:14:58.125Z

Link: CVE-2023-31427

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-08-01T23:15:28.770

Modified: 2025-02-13T17:16:28.123

Link: CVE-2023-31427

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses